The git-url-parse crate through 0.4.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to normalize_url in lib.rs, a similar issue to CVE-2023-32758 (Python).
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-06-12T00:00:00
Updated: 2024-08-02T15:39:36.136Z
Reserved: 2023-05-22T00:00:00
Link: CVE-2023-33290
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-06-12T13:15:10.243
Modified: 2023-06-21T16:06:56.787
Link: CVE-2023-33290
Redhat
No data.