CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects Apache.
CVE
CVE-2022-36125
Severity
HIGH
CVSS
7.5
EPSS
1.38%
Apache
Original NVD Description
It is possible to crash (panic) an application by providing a corrupted data to be read. This issue affects Rust applications using Apache Avro Rust SDK prior to 0.14.0 (previously known as avro-rs). Users should update to apache-avro version 0.14.0 which addresses this issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)