7.5
CVSSv3

CVE-2022-36125

Published: 09/08/2022 Updated: 12/08/2022
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

It is possible to crash (panic) an application by providing a corrupted data to be read. This issue affects Rust applications using Apache Avro Rust SDK before 0.14.0 (previously known as avro-rs). Users should update to apache-avro version 0.14.0 which addresses this issue.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache avro