Rewterz
Rewterz Threat Advisory – CVE-2023-2975 – OpenSSL Vulnerability
July 18, 2023
Rewterz
Rewterz Threat Alert – AZORult Malware – Active IOCs
July 18, 2023

Rewterz Threat Advisory – CVE-2023-37463 – Github Vulnerability

Severity

Medium

Analysis Summary

CVE-2023-37463

Github cmark-gfm is vulnerable to a denial of service, caused by three polynomial time complexity issues. By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to cause an unbounded resource exhaustion, and results in a denial of service condition.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2023-37463

Affected Vendors

GitHUB

Affected Products

  • GitHub cmark-gfm 0.29.0.gfm.11

Remediation

Upgrade to the latest version of cmark-gfm, available from the cmark-gfm GIT Repository.

cmark-gfm GIT Repository