Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-53160

Опубликовано: 28 июл. 2025
Источник: redhat
CVSS3: 3.3

Описание

The sequoia-openpgp crate before 1.16.0 for Rust allows out-of-bounds array access and a panic.

A flaw was found in sequoia-openpgp. The crate exhibits an out-of-bounds array access, leading to a panic during processing. A local attacker can trigger this condition by providing a specially crafted input, which results in a denial of service.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10rust-rpm-sequoiaFix deferred
Red Hat Enterprise Linux 10rust-sequoia-sqFix deferred
Red Hat Enterprise Linux 10rust-sequoia-sqvFix deferred
Red Hat Enterprise Linux 10trustee-guest-componentsFix deferred
Red Hat Enterprise Linux 9rust-rpm-sequoiaFix deferred
Red Hat Enterprise Linux 9trustee-guest-componentsFix deferred
Red Hat OpenShift Container Platform 4kata-containersFix deferred
Red Hat Trusted Profile Analyzerrhtpa/rhtpa-trustification-service-rhel9Fix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2383806sequoia-openpgp: Sequoia OpenPGP Array Access Panic

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 2.9
ubuntu
6 месяцев назад

The sequoia-openpgp crate before 1.16.0 for Rust allows out-of-bounds array access and a panic.

CVSS3: 2.9
nvd
6 месяцев назад

The sequoia-openpgp crate before 1.16.0 for Rust allows out-of-bounds array access and a panic.

CVSS3: 2.9
debian
6 месяцев назад

The sequoia-openpgp crate before 1.16.0 for Rust allows out-of-bounds ...

CVSS3: 2.9
github
больше 2 лет назад

sequoia-openpgp vulnerable to out-of-bounds array access leading to panic

3.3 Low

CVSS3