VYPR
Critical severityNVD Advisory· Published Feb 18, 2021· Updated Aug 3, 2024

CVE-2021-27378

CVE-2021-27378

Description

An issue was discovered in the rand_core crate before 0.6.2 for Rust. Because read_u32_into and read_u64_into mishandle certain buffer-length checks, a random number generator may be seeded with too little data.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
rand_corecrates.io
>= 0.6.0, < 0.6.20.6.2

Affected products

2

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.