Vulnerabilities > CVE-2021-30027 - Use of Uninitialized Resource vulnerability in Md4C Project Md4C 0.4.7

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
md4c-project
CWE-908

Summary

md_analyze_line in md4c.c in md4c 0.4.7 allows attackers to trigger use of uninitialized memory, and cause a denial of service via a malformed Markdown document.

Vulnerable Configurations

Part Description Count
Application
Md4C_Project
1

Common Weakness Enumeration (CWE)