Description
There is a stack consumption vulnerability in the Parser::advanceToNextToken function in parser.cpp in LibSass 3.4.5. A crafted input may lead to remote denial of service.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1471786
Related Vulnerabilities
CVE-2022-37223 Vulnerability in maven package com.jflyfox:jflyfox_jfinal
CVE-2020-28448 Vulnerability in npm package multi-ini
CVE-2018-1999020 Vulnerability in maven package org.onosproject:onos-core-common
CVE-2020-7765 Vulnerability in npm package @firebase/util
CVE-2021-46364 Vulnerability in maven package info.magnolia:magnolia-core