重大な露出リスク
CVE-2021-38190 An issue was discovered in the nalgebra crate before 0.27.1 for Rust.
- CVSS 9.8
新たな重大 Dimforge Nalgebra Out-of-Bounds Write(CVSS 9.8)— 公開直後のウィンドウ。成熟した悪用チェーンの前にインターネットスキャンが先行しがちです。
日次の脆弱性動向:KEV 追加、公開 exploit、重大開示、EPSS リスクの変化。
最優先の 3 件の変化 — アナリストによる短評。CVE ダンプではありません。
重大な露出リスク
新たな重大 Dimforge Nalgebra Out-of-Bounds Write(CVSS 9.8)— 公開直後のウィンドウ。成熟した悪用チェーンの前にインターネットスキャンが先行しがちです。
重大な露出リスク
新たな重大 Go-unarr Project Go-unarr Directory Traversal(CVSS 9.8)— 公開直後のウィンドウ。成熟した悪用チェーンの前にインターネットスキャンが先行しがちです。
重大な露出リスク
新たな重大公開(CVSS 9.8)— 深刻度が高く、エクスプロイト出現前の認知ウィンドウが短いです。
CISA KEV — 実環境での悪用が確認
本ダイジェストではこのカテゴリに該当なし。
本ダイジェストではこのカテゴリに該当なし。
本ダイジェストではこのカテゴリに該当なし。
An issue was discovered in the libp2p-deflate crate before 0.27.1 for Rust.
An issue was discovered in the array-tools crate before 0.3.2 for Rust.
An issue was discovered in the anymap crate through 0.12.1 for Rust.
An issue was discovered in the iced-x86 crate through 1.10.3 for Rust.
An issue was discovered in the lettre crate before 0.9.6 for Rust.
An issue was discovered in the nalgebra crate before 0.27.1 for Rust.
An issue was discovered in the ark-r1cs-std crate before 0.3.1 for Rust.
An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust.
An issue was discovered in the better-macro crate through 2021-07-22 for Rust.
unarr.go in go-unarr (aka Go bindings for unarr) 0.1.1 allows Directory Traversal via ../ in a pathname within a TAR archive.