CVE-2026-31812

Source
https://cve.org/CVERecord?id=CVE-2026-31812
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31812.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-31812
Aliases
Downstream
Related
Published
2026-03-10T21:04:36.812Z
Modified
2026-04-29T18:29:35.280139326Z
Severity
  • 8.7 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N CVSS Calculator
Summary
Quinn affected by unauthenticated remote DoS via panic in QUIC transport parameter parsing
Details

Quinn is a pure-Rust, async-compatible implementation of the IETF QUIC transport protocol. Prior to 0.11.14, a remote, unauthenticated attacker can trigger a denial of service in applications using vulnerable quinn versions by sending a crafted QUIC Initial packet containing malformed quictransportparameters. In quinn-proto parsing logic, attacker-controlled varints are decoded with unwrap(), so truncated encodings cause Err(UnexpectedEnd) and panic. This is reachable over the network with a single packet and no prior trust or authentication. This vulnerability is fixed in 0.11.14.

Database specific
{
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
        "CWE-248"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31812.json"
}
References

Affected packages

Git / github.com/quinn-rs/quinn

Affected ranges

Type
GIT
Repo
https://github.com/quinn-rs/quinn
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "fixed": "0.11.14"
        }
    ]
}

Affected versions

0.*
0.1.0
0.10.0
0.10.1
0.11.0
0.11.1
0.11.2
0.2.0
0.3.0
0.4.0
0.5.0
0.6.0
0.6.1
0.7.0
0.8.0
0.9.0
0.9.1
0.9.2
0.9.3
Other
pre-quinn-quicr
quinn-0.*
quinn-0.11.2
quinn-0.11.3
quinn-0.11.4
quinn-0.11.5
quinn-0.11.6
quinn-0.11.7
quinn-0.11.8
quinn-0.11.9
quinn-proto-0.*
quinn-proto-0.11.10
quinn-proto-0.11.11
quinn-proto-0.11.12
quinn-proto-0.11.13
quinn-proto-0.11.3
quinn-proto-0.11.4
quinn-proto-0.11.5
quinn-proto-0.11.6
quinn-proto-0.11.7
quinn-proto-0.11.8
quinn-proto-0.11.9
quinn-udp-0.*
quinn-udp-0.5.10
quinn-udp-0.5.11
quinn-udp-0.5.12
quinn-udp-0.5.13
quinn-udp-0.5.14
quinn-udp-0.5.2
quinn-udp-0.5.3
quinn-udp-0.5.4
quinn-udp-0.5.5
quinn-udp-0.5.6
quinn-udp-0.5.7
quinn-udp-0.5.8
quinn-udp-0.5.9
udp-0.*
udp-0.2.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31812.json"