Vulnerabilities > CVE-2021-25900 - Out-of-bounds Write vulnerability in Servo Smallvec

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
servo
CWE-787
critical

Summary

An issue was discovered in the smallvec crate before 0.6.14 and 1.x before 1.6.1 for Rust. There is a heap-based buffer overflow in SmallVec::insert_many.

Common Weakness Enumeration (CWE)