markdown2 >=1.0.1.18, fixed in 2.4.0, is affected by a regular expression denial of service vulnerability. If an attacker provides a malicious string, it can make markdown2 processing difficult or delayed for an extended period of time.
{ "binaries": [ { "binary_name": "python3-markdown2", "binary_version": "2.3.7-2" } ] }
{ "binaries": [ { "binary_name": "python3-markdown2", "binary_version": "2.4.1-1" } ] }
{ "binaries": [ { "binary_name": "python3-markdown2", "binary_version": "2.4.11-1" } ] }