icon

We found results for “

WS-2017-3764

Good to know:

icon

Date: November 21, 2017

Affected versions of this crate pre-allocate memory on deserializing raw buffers without checking whether there is sufficient data available. This allows an attacker to do denial-of-service attacks by sending small msgpack messages that allocate gigabytes of memory.

Language: RUST

Severity Score

Weakness Type (CWE)

Uncontrolled Resource Consumption ('Resource Exhaustion')

CWE-400

Top Fix

icon

Upgrade Version

Upgrade to version rmpv - 0.4.2

Learn More

Do you need more information?

Contact Us