An issue was discovered in the branca crate before 0.10.0 for Rust. Decoding tokens (with invalid base62 data) can panic.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2020-0075.html | Exploit Third Party Advisory |
https://github.com/tuupola/branca-spec/issues/22 | Third Party Advisory |
https://github.com/return/branca/issues/24 | Exploit Issue Tracking Patch Third Party Advisory |
Configurations
Information
Published : 2020-12-31 01:15
Updated : 2022-09-02 08:44
NVD link : CVE-2020-35918
Mitre link : CVE-2020-35918
JSON object : View
CWE
Products Affected
hakobaito
- branca