Critical severity9.8NVD Advisory· Published Dec 31, 2020· Updated Jun 17, 2026
CVE-2020-35858
CVE-2020-35858
Description
An issue was discovered in the prost crate before 0.6.1 for Rust. There is stack consumption via a crafted message, causing a denial of service (e.g., x86) or possibly remote code execution (e.g., ARM).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
prostcrates.io | < 0.6.1 | 0.6.1 |
Affected products
3- rust/prostdescription
Patches
Vulnerability mechanics
References
5- rustsec.org/advisories/RUSTSEC-2020-0002.htmlnvdExploitPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-gv73-9mwv-fwgqghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-35858ghsaADVISORY
- github.com/danburkert/prost/commit/04091d3e745c27590a5f1b7f581793e4159486b5ghsaWEB
- github.com/danburkert/prost/issues/267ghsaWEB
News mentions
0No linked articles in our index yet.