Vulnerabilities > CVE-2020-25016 - Type Confusion vulnerability in Rgb-Rust Project Rgb-Rust 0.4.0/0.8.14/0.8.16
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
NONE Summary
A safety violation was discovered in the rgb crate before 0.8.20 for Rust, leading to (for example) dereferencing of arbitrary pointers or disclosure of uninitialized memory. This occurs because structs can be treated as bytes for read and write operations.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |