markdown2 >=1.0.1.18, fixed in 2.4.0, is affected by a regular expression denial of service vulnerability. If an attacker provides a malicious string, it can make markdown2 processing difficult or delayed for an extended period of time.
| Software | From | Fixed in |
|---|---|---|
| markdown2_project / markdown2 | 1.0.1.18 | 2.4.0 |
| fedoraproject / fedora | 32 | 32.x |
| fedoraproject / fedora | 33 | 33.x |
| fedoraproject / fedora | 34 | 34.x |
markdown2
|
1.0.1.18 | 2.4.0 |