Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-12224

Опубликовано: 30 мая 2025
Источник: nvd
CVSS3: 8.8
EPSS Низкий

Описание

Improper Validation of Unsafe Equivalence in punycode by the idna crate from Servo rust-url allows an attacker to create a punycode hostname that one part of a system might treat as distinct while another part of that system would treat as equivalent to another hostname.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:servo:idna:*:*:*:*:*:rust:*:*
Версия до 1.0.0 (исключая)

EPSS

Процентиль: 29%
0.00108
Низкий

8.8 High

CVSS3

Дефекты

CWE-1289
CWE-352

Связанные уязвимости

CVSS3: 8.8
ubuntu
8 месяцев назад

Improper Validation of Unsafe Equivalence in punycode by the idna crate from Servo rust-url allows an attacker to create a punycode hostname that one part of a system might treat as distinct while another part of that system would treat as equivalent to another hostname.

CVSS3: 4.2
redhat
8 месяцев назад

Improper Validation of Unsafe Equivalence in punycode by the idna crate from Servo rust-url allows an attacker to create a punycode hostname that one part of a system might treat as distinct while another part of that system would treat as equivalent to another hostname.

CVSS3: 8.8
debian
8 месяцев назад

Improper Validation of Unsafe Equivalence in punycode by the idna crat ...

suse-cvrf
16 дней назад

Security update for librsvg

suse-cvrf
6 месяцев назад

Security update for sccache

EPSS

Процентиль: 29%
0.00108
Низкий

8.8 High

CVSS3

Дефекты

CWE-1289
CWE-352