Stack-based buffer overflow in LibSass - CVE-2018-19838

 

Stack-based buffer overflow in LibSass - CVE-2018-19838

Published: December 4, 2018


Vulnerability identifier: #VU16233
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-19838
CWE-ID: CWE-121
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause DoS condition.

The vulnerability exists due to stack-based buffer overflow in functions inside ast.cpp for IMPLEMENT_AST_OPERATORS expansion, as demonstrated by recursive calls involving clone(), cloneChildren(), and copy(). A remote attacker can send a specially crafted sass file, trigger memory corruption and cause the service to crash.


Affected software

LibSass
IBM Watson Machine Learning Accelerator
IBM Edge Application Manager
IBM Watson Machine Learning on CP4D
QRadar User Behavior Analytics

How to mitigate CVE-2018-19838

Update to version 3.5.5.

LibSass - update to 3.5.5
IBM Watson Machine Learning on CP4D - update to 2.6.0
QRadar User Behavior Analytics - update to 4.1.11

External References

Related Security Bulletins