Vulnerabilities > CVE-2021-26952 - Use of Uninitialized Resource vulnerability in Ms3D Project Ms3D

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
ms3d-project
CWE-908

Summary

An issue was discovered in the ms3d crate before 0.1.3 for Rust. It might allow attackers to obtain sensitive information from uninitialized memory locations via IoReader::read.

Vulnerable Configurations

Part Description Count
Application
Ms3D_Project
1

Common Weakness Enumeration (CWE)