MEDIUMcrates.io →
stellar-strkey vulnerable to panic in SignedPayload::from_payload
stellar-strkey vulnerable to panic in SignedPayload::from_payload
Affected packages
- stellar-strkey
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://github.com/stellar/rs-stellar-strkey/security/advisories/GHSA-5873-6fwq-463f
- https://nvd.nist.gov/vuln/detail/CVE-2023-46135
- https://github.com/stellar/rs-stellar-strkey/issues/58
- https://github.com/stellar/rs-stellar-strkey/pull/59
- https://github.com/stellar/rs-stellar-strkey/commit/83adad0f5b1cda693c7ba8524d395add8077865f
- https://github.com/stellar/rs-stellar-strkey
- https://github.com/stellar/rs-stellar-strkey/releases/tag/v0.0.8
Structured record: https://osv.dev/vulnerability/GHSA-5873-6fwq-463f
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta