Description
An issue was discovered in the serde_cbor crate before 0.10.2 for Rust. The CBOR deserializer can cause stack consumption via nested semantic tags.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1940 | An issue was discovered in the serde_cbor crate before 0.10.2 for Rust. The CBOR deserializer can cause stack consumption via nested semantic tags. |
Github GHSA |
GHSA-xr7r-88qv-q7hm | Out of bounds write in serde_cbor |
References
| Link | Providers |
|---|---|
| https://rustsec.org/advisories/RUSTSEC-2019-0025.html |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T03:00:19.115Z
Reserved: 2020-12-31T00:00:00.000Z
Link: CVE-2019-25001
No data.
Status : Modified
Published: 2020-12-31T10:15:14.177
Modified: 2024-11-21T04:39:42.710
Link: CVE-2019-25001
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA