CVE-2023-33289
21.06.2023, 20:15
The urlnorm crate through 0.1.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to lib.rs. NOTE: the Supplier disputes this, taking the position that "Slow printing of URLs is not a CVE."Enginsight
Vendor | Product | Version |
---|---|---|
urlnorm_project | urlnorm | 𝑥 ≤ 0.1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References