Количество 3
Количество 3
CVE-2026-35457
libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to 0.17.1, the rendezvous server stores pagination cookies without bounds. An unauthenticated peer can repeatedly issue DISCOVER requests and force unbounded memory growth. This vulnerability is fixed in 0.17.1.
GHSA-v5hw-cv9c-rpg7
libp2p-rendezvous: Unbounded rendezvous DISCOVER cookies enable remote memory exhaustion
BDU:2026-05578
Уязвимость сервера библиотеки libp2p-rust, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-35457 libp2p-rust is the official rust language Implementation of the libp2p networking stack. Prior to 0.17.1, the rendezvous server stores pagination cookies without bounds. An unauthenticated peer can repeatedly issue DISCOVER requests and force unbounded memory growth. This vulnerability is fixed in 0.17.1. | CVSS3: 8.2 | 0% Низкий | 4 месяца назад | |
GHSA-v5hw-cv9c-rpg7 libp2p-rendezvous: Unbounded rendezvous DISCOVER cookies enable remote memory exhaustion | CVSS3: 8.2 | 0% Низкий | 4 месяца назад | |
BDU:2026-05578 Уязвимость сервера библиотеки libp2p-rust, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 8.2 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу