In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsA fix was pushed into the master
branch but not yet published.
Affected versions of this package are vulnerable to Use After Free due to an incorrect reallocation logic in the vec_insert_bytes
function.
Note:
This function does not have to be called directly to trigger the vulnerability because many methods on EncodingWriter
call this function internally.