{"id":"GHSA-72r2-rg28-47v9","summary":"`read` on uninitialized buffer may cause UB (bite::read::BiteReadExpandedExt::read_framed_max)","details":"Affected versions of this crate calls a user provided `Read` implementation on an uninitialized buffer. `Read` on uninitialized buffer is defined as undefined behavior in Rust.\n","aliases":["CVE-2020-36511","GHSA-v2ch-fc8f-qm33","RUSTSEC-2020-0153"],"modified":"2023-11-08T04:03:47.053571Z","published":"2022-06-16T23:44:51Z","database_specific":{"severity":"HIGH","github_reviewed":true,"github_reviewed_at":"2022-06-16T23:44:51Z","nvd_published_at":null,"cwe_ids":[]},"references":[{"type":"WEB","url":"https://github.com/hinaria/bite/issues/1"},{"type":"PACKAGE","url":"https://github.com/hinaria/bite"},{"type":"WEB","url":"https://rustsec.org/advisories/RUSTSEC-2020-0153.html"}],"affected":[{"package":{"name":"bite","ecosystem":"crates.io","purl":"pkg:cargo/bite"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"last_affected":"0.0.5"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/06/GHSA-72r2-rg28-47v9/GHSA-72r2-rg28-47v9.json"}}],"schema_version":"1.9.0"}