ZeroHour

CVE-2021-28879

PoC
CVSS 3.1
9.8 critical
EPSS
2%p83
Published
()
Modified
Description

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a buffer overflow when a consumed Zip iterator is used again.

Vendors
rust-langfedoraproject
Products
rust, fedora
Weakness
CWE-190
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.