rustls project records
3 published records for vendor rustls project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-248 Uncaught Exception1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2019-15541No exploit | rustls-mio/examples/tlsserver.rs in the rustls crate before 0.16.0 for Rust allows attackers to cause a denial of service (loop of conn_evenrustls project · rustls · CWE-88 | High7.5 | — | 2.2% | Aug 26, 2019 |
30Monitor | CVE-2024-32650No exploit | Rustls vulnerable to an infinite loop in rustls::conn::ConnectionCommon::complete_io() with proper client inputrustls · rustls · CWE-835 | High7.5 | — | 0.9% | Apr 19, 2024 |
30Monitor | CVE-2024-11738No exploit | Rustls: rustls network-reachable panic in `acceptor::accept`rustls project · rustls · CWE-248 | High7.5 | — | 0.7% | Dec 6, 2024 |
- CVE-2019-1554131Monitor
rustls-mio/examples/tlsserver.rs in the rustls crate before 0.16.0 for Rust allows attackers to cause a denial of service (loop of conn_even
HighCVSS 7.5No exploitEPSS 2%rustls project · rustlsAug 26, 2019
- CVE-2024-3265030Monitor
Rustls vulnerable to an infinite loop in rustls::conn::ConnectionCommon::complete_io() with proper client input
HighCVSS 7.5No exploitEPSS 1%rustls · rustlsApr 19, 2024
- CVE-2024-1173830Monitor
Rustls: rustls network-reachable panic in `acceptor::accept`
HighCVSS 7.5No exploitEPSS 1%rustls project · rustlsDec 6, 2024