The SingleDocParser::HandleFlowSequence function in yaml-cpp (aka LibYaml-C++) 0.6.2 allows remote attackers to cause a denial of service (stack consumption and application crash) via a crafted YAML file.
{ "binaries": [ { "binary_version": "0.5.1-1", "binary_name": "libyaml-cpp-dev" }, { "binary_version": "0.5.1-1", "binary_name": "libyaml-cpp0.5" } ] }
{ "binaries": [ { "binary_version": "0.5.2-4ubuntu1~16.04.4", "binary_name": "libyaml-cpp-dev" }, { "binary_version": "0.5.2-4ubuntu1~16.04.4", "binary_name": "libyaml-cpp0.5v5" } ] }
{ "binaries": [ { "binary_version": "0.3.0-1.2", "binary_name": "libyaml-cpp0.3-dev" }, { "binary_version": "0.3.0-1.2", "binary_name": "libyaml-cpp0.3v5" } ] }
{ "binaries": [ { "binary_version": "0.5.2-4ubuntu1", "binary_name": "libyaml-cpp-dev" }, { "binary_version": "0.5.2-4ubuntu1", "binary_name": "libyaml-cpp0.5v5" } ] }
{ "binaries": [ { "binary_version": "0.6.2-4ubuntu1", "binary_name": "libyaml-cpp-dev" }, { "binary_version": "0.6.2-4ubuntu1", "binary_name": "libyaml-cpp0.6" } ] }