CVE-2025-4432

A flaw was found in Rust's Ring package. A panic may be triggered when overflow checking is enabled. In the QUIC protocol, this flaw allows an attacker to induce this panic by sending a specially crafted packet. It will likely occur unintentionally in 1 out of every 2**32 packets sent or received.
Configurations

No configuration.

History

12 May 2025, 17:32

Type Values Removed Values Added
Summary
  • (es) Se encontró una falla en el paquete Ring de Rust. Se puede generar un pánico al habilitar la comprobación de desbordamiento. En el protocolo QUIC, esta falla permite a un atacante inducir este pánico mediante el envío de un paquete especialmente manipulado. Es probable que ocurra involuntariamente en 1 de cada 2**32 paquetes enviados o recibidos.

09 May 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-09 16:15

Updated : 2025-05-12 17:32


NVD link : CVE-2025-4432

Mitre link : CVE-2025-4432

CVE.ORG link : CVE-2025-4432


JSON object : View

Products Affected

No product.

CWE
CWE-770

Allocation of Resources Without Limits or Throttling