Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-28879

Опубликовано: 05 мар. 2021
Источник: redhat
CVSS3: 9.8
EPSS Низкий

Описание

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a buffer overflow when a consumed Zip iterator is used again.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 9rustNot affected
Red Hat Developer Toolsrust-toolset-1.52FixedRHSA-2021:304210.08.2021
Red Hat Developer Toolsrust-toolset-1.52-rustFixedRHSA-2021:304210.08.2021
Red Hat Enterprise Linux 8rust-toolsetFixedRHSA-2021:306310.08.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190->CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1949211rust: integer overflow in the Zip implementation can lead to a buffer overflow

EPSS

Процентиль: 32%
0.00123
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 4 лет назад

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a buffer overflow when a consumed Zip iterator is used again.

CVSS3: 9.8
nvd
больше 4 лет назад

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a buffer overflow when a consumed Zip iterator is used again.

CVSS3: 9.8
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 9.8
debian
больше 4 лет назад

In the standard library in Rust before 1.52.0, the Zip implementation ...

CVSS3: 9.8
github
около 3 лет назад

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a buffer overflow when a consumed Zip iterator is used again.

EPSS

Процентиль: 32%
0.00123
Низкий

9.8 Critical

CVSS3