CVE-2020-35861
PoC —CVSS 3.1
7.5 high
EPSS
1%p73
Published
()
Modified
Description
An issue was discovered in the bumpalo crate before 3.2.1 for Rust. The realloc feature allows the reading of unknown memory. Attackers can potentially read cryptographic keys.
- Vendors
- bumpalo project
- Products
- bumpalo
- Weakness
- CWE-125
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.