VYPR

Prost

by Prost Project

CVEs (2)

  • CVE-2020-35858CriDec 31, 2020
    risk 0.57cvss 9.8epss 0.03

    An issue was discovered in the prost crate before 0.6.1 for Rust. There is stack consumption via a crafted message, causing a denial of service (e.g., x86) or possibly remote code execution (e.g., ARM).

  • CVE-2021-38192HigAug 8, 2021
    risk 0.42cvss 7.5epss 0.01

    An issue was discovered in the prost-types crate before 0.8.0 for Rust. An overflow can occur during conversion from Timestamp to SystemTime.