An issue was discovered in the branca crate before 0.10.0 for Rust. Decoding tokens (with invalid base62 data) can panic.
Link | Tags |
---|---|
https://rustsec.org/advisories/RUSTSEC-2020-0075.html | third party advisory exploit |
https://github.com/tuupola/branca-spec/issues/22 | third party advisory |
https://github.com/return/branca/issues/24 | patch exploit third party advisory issue tracking |