Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gfxp-f68g-8x78

Опубликовано: 15 сент. 2025
Источник: github
Github: Прошло ревью
CVSS4: 8.7

Описание

LibYML: libyml::string::yaml_string_extend is unsound and unmaintained

In version 0.0.4, libyml::string::yaml_string_extend was revised resulting in undefined behaviour, which is unsound.

The GitHub project for libyml was archived after unsoundness issues were raised.

If you rely on this crate, it is highly recommended switching to a maintained alternative.

Recommended alternatives

Пакеты

Наименование

libyml

rust
Затронутые версииВерсия исправления

>= 0.0.4, <= 0.0.5

Отсутствует

8.7 High

CVSS4

Дефекты

CWE-758

8.7 High

CVSS4

Дефекты

CWE-758