Количество 4
Количество 4
CVE-2021-21235
kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can cause an infinite loop when a crafted PNG file is given. This is fixed in version 0.5.3. No workaround is available. Applications that do not pass files with the PNG signature to Reader::read_from_container are not affected.
CVE-2021-21235
kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can cause an infinite loop when a crafted PNG file is given. This is fixed in version 0.5.3. No workaround is available. Applications that do not pass files with the PNG signature to Reader::read_from_container are not affected.
CVE-2021-21235
kamadak-exif is an exif parsing library written in pure Rust. In kamad ...
GHSA-px9g-8hgv-jvg2
kamadak-exif vulnerable to Infinite loop when parsing PNG files
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-21235 kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can cause an infinite loop when a crafted PNG file is given. This is fixed in version 0.5.3. No workaround is available. Applications that do not pass files with the PNG signature to Reader::read_from_container are not affected. | CVSS3: 5.7 | 0% Низкий | около 5 лет назад | |
CVE-2021-21235 kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can cause an infinite loop when a crafted PNG file is given. This is fixed in version 0.5.3. No workaround is available. Applications that do not pass files with the PNG signature to Reader::read_from_container are not affected. | CVSS3: 5.7 | 0% Низкий | около 5 лет назад | |
CVE-2021-21235 kamadak-exif is an exif parsing library written in pure Rust. In kamad ... | CVSS3: 5.7 | 0% Низкий | около 5 лет назад | |
GHSA-px9g-8hgv-jvg2 kamadak-exif vulnerable to Infinite loop when parsing PNG files | CVSS3: 6.5 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу