rpm package
opensuse/discount&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/discount&distro=openSUSE%20Tumbleweed
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-4833 | Low | 3.3 | < 3.0.2.0-1.1 | 3.0.2.0-1.1 | Mar 26, 2026 | A weakness has been identified in Orc discount up to 3.0.1.2. This issue affects the function compile of the file markdown.c of the component Markdown Handler. This manipulation causes uncontrolled recursion. The attack is restricted to local execution. The exploit has been made | |
| CVE-2018-12495 | Med | 5.5 | < 2.2.7-1.3 | 2.2.7-1.3 | Jun 15, 2018 | The quoteblock function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file. | |
| CVE-2018-11468 | Med | 5.5 | < 2.2.7-1.3 | 2.2.7-1.3 | May 25, 2018 | The __mkd_trim_line function in mkdio.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html. |
- affected < 3.0.2.0-1.1fixed 3.0.2.0-1.1
A weakness has been identified in Orc discount up to 3.0.1.2. This issue affects the function compile of the file markdown.c of the component Markdown Handler. This manipulation causes uncontrolled recursion. The attack is restricted to local execution. The exploit has been made
- affected < 2.2.7-1.3fixed 2.2.7-1.3
The quoteblock function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file.
- affected < 2.2.7-1.3fixed 2.2.7-1.3
The __mkd_trim_line function in mkdio.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.