Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-4w5h-hx6r-28q7 | ratex-parser has unbounded parser recursion that leads to stack overflow (process abort) |
Fri, 21 Aug 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | RaTeX is a KaTeX-compatible math rendering engine written in Rust. Prior to version 0.1.11, RaTeX’s recursive-descent parser recurses one (or more) native stack frame per nesting level at `{`, `\left`, `\sqrt{`, `^{`, etc, with no maximum depth limit. A short, ~10 KB input of nested groups overflows the 8 MB main-thread stack and aborts the process. With `panic = "abort"` (`Cargo.toml:48`), and because a Rust stack overflow is always a fatal `SIGABRT` regardless of panic strategy this is an unrecoverable, whole-process denial of service reachable from a single untrusted LaTeX string. Version 0.1.11 fixes the issue. | |
| Title | ratex-parser has unbounded parser recursion that leads to stack overflow (process abort) | |
| Weaknesses | CWE-400 CWE-674 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-08-21T21:34:16.017Z
Reserved: 2026-06-09T17:30:33.457Z
Link: CVE-2026-53531
No data.
Status : Received
Published: 2026-08-21T22:16:39.737
Modified: 2026-08-21T22:16:39.737
Link: CVE-2026-53531
No data.
OpenCVE Enrichment
Updated: 2026-08-21T22:30:17Z
Github GHSA