HIGHcrates.io →
Quinn: Remote memory exhaustion in quinn-proto from unbounded out-of-order stream reassembly
Quinn: Remote memory exhaustion in quinn-proto from unbounded out-of-order stream reassembly
Affected packages
- quinn-proto
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://github.com/quinn-rs/quinn/security/advisories/GHSA-4w2j-m93h-cj5j
- https://github.com/quinn-rs/quinn/pull/2694
- https://github.com/quinn-rs/quinn/commit/fed0321a9a672819662caab37f5662f1ad91308e
- https://github.com/quinn-rs/quinn
- https://github.com/quinn-rs/quinn/releases/tag/quinn-proto-0.11.15
- https://rustsec.org/advisories/RUSTSEC-2026-0185.html
Structured record: https://osv.dev/vulnerability/GHSA-4w2j-m93h-cj5j
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta