VYPR
Medium severity6.5NVD Advisory· Published Aug 26, 2019· Updated Jun 17, 2026

CVE-2018-20992

CVE-2018-20992

Description

An issue was discovered in the claxon crate before 0.4.1 for Rust. Uninitialized memory can be exposed because certain decode buffer sizes are mishandled.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
claxoncrates.io
>= 0.4.0, < 0.4.10.4.1
claxoncrates.io
< 0.3.20.3.2

Affected products

4
  • cpe:2.3:a:claxon_project:claxon:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:claxon_project:claxon:*:*:*:*:*:*:*:*range: >=0.2.0,<=0.3.1
    • cpe:2.3:a:claxon_project:claxon:0.4.0:*:*:*:*:*:*:*
  • Rust/claxon cratedescription
  • ghsa-coords
    Range: >= 0.4.0, < 0.4.1

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.