CVE-2018-20821 REJECTED

The parsing component in LibSass through 3.5.5 allows attackers to cause a denial-of-service (uncontrolled recursion in Sass::Parser::parse_css_variable_value in parser.cpp).

EPSS 0.32% · 54.4th percentile

Risk Scores

EPSS Score
0.32%
54.4th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSlibsass0, 3.6.5+20220909-1ubuntu1
Ubuntu:20.04:LTSlibsass0, 3.5.5-4
Ubuntu:22.04:LTSlibsass0

Timeline

References

Open in Interactive Console →