Back to bug 2175697

Who When What Removed Added
Vipul Nair 2023-03-06 11:10:19 UTC Summary CVE-2023-26302 markdown-it-py:Denial of service in the command line interface due to invalid UTF-8 characters as input. CVE-2023-26302 markdown-it-py: Denial of service in the command line interface due to invalid UTF-8 characters as input.
Alias CVE-2023-26302
Vipul Nair 2023-03-06 11:11:36 UTC CC bcoca, cwelton, davidn, epacific, jcammara, jhardy, jneedle, jobarker, mabashia, osapryki, simaishi, smcdonal, teagle, yguenane, zsadeh
Vipul Nair 2023-03-06 11:17:47 UTC Depends On 2175701, 2175702
Vipul Nair 2023-03-06 11:26:10 UTC CC adudiak, kshier, stcannon, tfister
Fixed In Version markdown-it-py 2.2.0
Vipul Nair 2023-03-06 11:40:56 UTC Blocks 2172788
Maxwell G 2023-03-06 17:39:38 UTC CC maxwell
Flags needinfo?(vinair)
Vipul Nair 2023-03-10 08:18:35 UTC Flags needinfo?(vinair) needinfo?(maxwell)
Vipul Nair 2023-03-10 08:19:54 UTC Depends On 2177154
Maxwell G 2023-03-14 03:13:38 UTC Flags needinfo?(maxwell)
Yadnyawalk Tale 2023-04-06 06:29:04 UTC CC gtanzill, mminar, rbiba, sskracic
Yadnyawalk Tale 2023-04-06 08:00:40 UTC CC gtanzill, mminar, rbiba, sskracic
Vipul Nair 2023-05-02 17:08:09 UTC Doc Text A denial of service vulnerability exists in markdown-it-py.An attacker could craft a payload with invalid UTF-8 characters as input to cause a crash thereby affecting the availability
Red Hat Bugzilla 2023-07-07 08:28:05 UTC Assignee security-response-team nobody

Back to bug 2175697