Vulnerabilities > CVE-2021-45692 - Use of Uninitialized Resource vulnerability in Messagepack-Rs Project Messagepack-Rs
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_extension_others may read from uninitialized memory locations.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/messagepack-rs/RUSTSEC-2021-0092.md
- https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/messagepack-rs/RUSTSEC-2021-0092.md
- https://rustsec.org/advisories/RUSTSEC-2021-0092.html
- https://rustsec.org/advisories/RUSTSEC-2021-0092.html