Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-xrv8-2pf5-f3q7
  • crates.io/nitro-tpm-pcr-compute
nitro-tpm-pcr-compute may allow kernel command line modification by an account operator 19 hours ago
  • Fix available
  • Severity - 6.0 (Medium)
GHSA-2cgv-28vr-rv6j
  • crates.io/libcrux-intrinsics
libcrux incorrectly calculates on aarch64 yesterday
  • Fix available
  • Severity - 8.8 (High)
RUSTSEC-2025-0133
  • crates.io/libcrux-intrinsics
Incorrect calculation on aarch64 2 days ago
  • Fix available
GHSA-mj73-j457-8x9q
  • crates.io/maxminddb
maxminddb's `Reader::open_mmap` unsoundly marks unsafe memmap operation as safe 4 days ago
  • Fix available
  • Severity - 2.7 (Low)
GHSA-pq5v-rwp8-p7gm
  • crates.io/rtvm-interpreter
rtvm-interpreter lacks sufficient checks in public API 4 days ago
  • No fix available
  • Severity - 2.7 (Low)
RUSTSEC-2025-0132
  • crates.io/maxminddb
`Reader::open_mmap` unsoundly marks unsafe memmap operation as safe 28 Nov
  • Fix available
RUSTSEC-2025-0134
  • crates.io/rustls-pemfile
rustls-pemfile is unmaintained 28 Nov
  • No fix available
GHSA-2fjw-whxm-9v4q
  • crates.io/nftnl
libnftnl has Heap-based Buffer Overflow in nftnl::Batch::with_page_size (nftnl-rs) 25 Nov
  • Fix available
  • Severity - 9.3 (Critical)
GHSA-8frv-q972-9rq5
  • crates.io/cggmp21
  • crates.io/cggmp24
cggmp24 and cggmp21 are vulnerable to signature forgery through altered presignatures 25 Nov
  • Fix available
  • Severity - 8.2 (High)
GHSA-m95p-425x-x889
  • crates.io/cggmp21
  • crates.io/cggmp24
cggmp21 has a missing check in the ZK proof used in CGGMP21 25 Nov
  • Fix available
  • Severity - 9.3 (Critical)
RUSTSEC-2025-0127
  • crates.io/cggmp21
CGGMP21 presignatures can be used in the way that significantly reduces security 24 Nov
  • No fix available
RUSTSEC-2025-0128
  • crates.io/cggmp24
CGGMP21 presignatures can be used in the way that significantly reduces security 24 Nov
  • Fix available
RUSTSEC-2025-0129
  • crates.io/cggmp21
Missing check in ZK proof in CGGMP21 Threshold Signing Protocol 24 Nov
  • Fix available
RUSTSEC-2025-0130
  • crates.io/cggmp24
Missing check in ZK proof in CGGMP21 Threshold Signing Protocol 24 Nov
  • Fix available
RUSTSEC-2025-0125
  • crates.io/thread-amount
Resource Exhaustion (Memory and Handle Leaks) on Windows and macOS 22 Nov
  • Fix available
  • Severity - 7.5 (High)
GHSA-jf9p-2fv9-2jp2
  • crates.io/thread-amount
thread-amount Vulnerable to Resource Exhaustion (Memory and Handle Leaks) on Windows and macOS 21 Nov
  • Fix available
  • Severity - 8.7 (High)