Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vqx7-pw4r-29rr

Опубликовано: 25 авг. 2021
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Out of bounds read in bumpalo

An issue was discovered in the bumpalo crate before 3.2.1 for Rust. The realloc feature allows the reading of unknown memory. Attackers can potentially read cryptographic keys.

Пакеты

Наименование

bumpalo

rust
Затронутые версииВерсия исправления

>= 3.0.0, < 3.2.1

3.2.1

EPSS

Процентиль: 51%
0.00285
Низкий

7.5 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 5 лет назад

An issue was discovered in the bumpalo crate before 3.2.1 for Rust. The realloc feature allows the reading of unknown memory. Attackers can potentially read cryptographic keys.

CVSS3: 7.5
nvd
около 5 лет назад

An issue was discovered in the bumpalo crate before 3.2.1 for Rust. The realloc feature allows the reading of unknown memory. Attackers can potentially read cryptographic keys.

CVSS3: 7.5
debian
около 5 лет назад

An issue was discovered in the bumpalo crate before 3.2.1 for Rust. Th ...

EPSS

Процентиль: 51%
0.00285
Низкий

7.5 High

CVSS3

Дефекты

CWE-125