Affected version of this crate did not properly parse unknown fields when parsing a user-supplied input.
This allows an attacker to cause a stack overflow when parsing the mssage on untrusted data.
{ "license": "CC0-1.0" }
{ "affects": { "functions": [ "protobuf::coded_input_stream::CodedInputStream::skip_group" ], "arch": [], "os": [] }, "affected_functions": null }
"https://github.com/rustsec/advisory-db/blob/osv/crates/RUSTSEC-2024-0437.json"
[ "denial-of-service" ]
null