CVE-2020-35858

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
31/12/2020
Last modified:
21/07/2021

Description

An issue was discovered in the prost crate before 0.6.1 for Rust. There is stack consumption via a crafted message, causing a denial of service (e.g., x86) or possibly remote code execution (e.g., ARM).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:prost_project:prost:*:*:*:*:*:rust:*:* 0.6.1 (excluding)


References to Advisories, Solutions, and Tools