rustsec / advisory-db

Security advisory database for Rust crates published through crates.io
https://rustsec.org
Other
902 stars 349 forks source link

rcrypto has a stack buffer overflow #1901

Open riking opened 6 months ago

riking commented 6 months ago

https://github.com/mengsuenyan/rcrypto/issues/1 https://asan.saethlin.dev/ub?crate=rcrypto&version=0.2.0

Crate has no dependents: https://crates.io/crates/rcrypto/reverse_dependencies

Check in after a few months to see if there's any response. Probably needs an unmaintained advisory since it mentions cryptography