Description
An issue was discovered in the serde_cbor crate before 0.10.2 for Rust. The CBOR deserializer can cause stack consumption via nested semantic tags.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1940 | An issue was discovered in the serde_cbor crate before 0.10.2 for Rust. The CBOR deserializer can cause stack consumption via nested semantic tags. |
Github GHSA |
GHSA-xr7r-88qv-q7hm | Out of bounds write in serde_cbor |
References
| Link | Providers |
|---|---|
| https://rustsec.org/advisories/RUSTSEC-2019-0025.html |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T03:00:19.115Z
Reserved: 2020-12-31T00:00:00.000Z
Link: CVE-2019-25001
No data.
Status : Modified
Published: 2020-12-31T10:15:14.177
Modified: 2026-06-17T02:31:27.497
Link: CVE-2019-25001
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-787
Out-of-bounds Write
EUVD
Github GHSA