An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_binary may read from uninitialized memory locations.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2021-0092.html | Third Party Advisory |
https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/messagepack-rs/RUSTSEC-2021-0092.md | Third Party Advisory |
Configurations
Information
Published : 2021-12-26 16:15
Updated : 2022-01-06 10:57
NVD link : CVE-2021-45690
Mitre link : CVE-2021-45690
JSON object : View
CWE
CWE-908
Use of Uninitialized Resource
Products Affected
messagepack-rs_project
- messagepack-rs