libp2p records
4 published records for vendor libp2p.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-347 Improper Verification of Cryptographic Signature1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-770 Allocation of Resources Without Limits or Throttling1
- CWE-908 Use of Uninitialized Resource1
The weakness classes this vendor ships most often: where to look.
CWEAll records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2020-36443No exploit | An issue was discovered in the libp2p-deflate crate before 0.27.1 for Rust.libp2p · libp2p-deflate · CWE-908 | Critical9.8 | — | 1.2% | Aug 8, 2021 |
30Monitor | CVE-2023-39533No exploit | libp2p nodes vulnerable to attack using large RSA keyslibp2p · go-libp2p · CWE-770 | High7.5 | — | 1.5% | Aug 8, 2023 |
30Monitor | CVE-2019-15545No exploit | An issue was discovered in the libp2p-core crate before 0.8.1 for Rust.libp2p · libp2p · CWE-347 | High7.5 | — | 0.8% | Aug 26, 2019 |
30Monitor | CVE-2024-32984No exploit | Yamux Memory Exhaustion Vulnerability via Active::pending_frames propertylibp2p · rust-yamux · CWE-400 | High7.5 | — | 0.8% | May 1, 2024 |
- CVE-2020-3644339Monitor
An issue was discovered in the libp2p-deflate crate before 0.27.1 for Rust.
CriticalCVSS 9.8No exploitEPSS 1%libp2p · libp2p-deflateAug 8, 2021
- CVE-2023-3953330Monitor
libp2p nodes vulnerable to attack using large RSA keys
HighCVSS 7.5No exploitEPSS 2%libp2p · go-libp2pAug 8, 2023
- CVE-2019-1554530Monitor
An issue was discovered in the libp2p-core crate before 0.8.1 for Rust.
HighCVSS 7.5No exploitEPSS 1%libp2p · libp2pAug 26, 2019
- CVE-2024-3298430Monitor
Yamux Memory Exhaustion Vulnerability via Active::pending_frames property
HighCVSS 7.5No exploitEPSS 1%libp2p · rust-yamuxMay 1, 2024