Description
rs-stellar-strkey is a Rust lib for encode/decode of Stellar Strkeys. A panic vulnerability occurs when a specially crafted payload is used.`inner_payload_len` should not above 64. This vulnerability has been patched in version 0.0.8.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2655 | rs-stellar-strkey is a Rust lib for encode/decode of Stellar Strkeys. A panic vulnerability occurs when a specially crafted payload is used.`inner_payload_len` should not above 64. This vulnerability has been patched in version 0.0.8. |
Github GHSA |
GHSA-5873-6fwq-463f | stellar-strkey vulnerable to panic in SignedPayload::from_payload |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-09-10T15:06:21.577Z
Reserved: 2023-10-16T17:51:35.574Z
Link: CVE-2023-46135
Updated: 2024-08-02T20:37:39.801Z
Status : Modified
Published: 2023-10-25T18:17:36.673
Modified: 2024-11-21T08:27:57.273
Link: CVE-2023-46135
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA