CVE-2025-53605

Published
View on NVD ↗
CVSS v3
5.9
MEDIUM
CVSS v2
N/A
Affected
2
PROJECTS

Description

The protobuf crate before 3.7.2 for Rust allows uncontrolled recursion in the protobuf::coded_input_stream::CodedInputStream::skip_group parsing of unknown fields in untrusted input.

Protocol Buffers - Google's data interchange format
Crates.ioCrates.io
147M
Rust implementation of Google protocol buffers
GitHubGitHub
2.97K