CVE-2023-53161

The buffered-reader crate before 1.1.5 for Rust allows out-of-bounds array access and a panic.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sequoia-pgp:buffered-reader:*:*:*:*:*:rust:*:*
cpe:2.3:a:sequoia-pgp:buffered-reader:*:*:*:*:*:rust:*:*

History

06 Aug 2025, 21:16

Type Values Removed Values Added
References () https://crates.io/crates/buffered-reader - () https://crates.io/crates/buffered-reader - Product
References () https://github.com/advisories/GHSA-29mf-62xx-28jq - () https://github.com/advisories/GHSA-29mf-62xx-28jq - Third Party Advisory
References () https://gitlab.com/sequoia-pgp/sequoia/-/tags/buffered-reader%2Fv1.0.2 - () https://gitlab.com/sequoia-pgp/sequoia/-/tags/buffered-reader%2Fv1.0.2 - Release Notes
References () https://gitlab.com/sequoia-pgp/sequoia/-/tags/buffered-reader%2Fv1.1.5 - () https://gitlab.com/sequoia-pgp/sequoia/-/tags/buffered-reader%2Fv1.1.5 - Release Notes
References () https://lists.sequoia-pgp.org/hyperkitty/list/announce@lists.sequoia-pgp.org/thread/SN2E3QRT4DMQ5JNEK6VIN6DJ5SH766DI/ - () https://lists.sequoia-pgp.org/hyperkitty/list/announce@lists.sequoia-pgp.org/thread/SN2E3QRT4DMQ5JNEK6VIN6DJ5SH766DI/ - Patch
References () https://rustsec.org/advisories/RUSTSEC-2023-0039.html - () https://rustsec.org/advisories/RUSTSEC-2023-0039.html - Third Party Advisory
First Time Sequoia-pgp
Sequoia-pgp buffered-reader
CPE cpe:2.3:a:sequoia-pgp:buffered-reader:*:*:*:*:*:rust:*:*

29 Jul 2025, 14:14

Type Values Removed Values Added
Summary
  • (es) El paquete buffered-reader para Rust anterior a la versión 1.1.5 permite el acceso a matrices fuera de los límites y un pánico.

28 Jul 2025, 04:15

Type Values Removed Values Added
Summary (en) The buffered-reader crate before 1.2.0 for Rust allows out-of-bounds array access and a panic. (en) The buffered-reader crate before 1.1.5 for Rust allows out-of-bounds array access and a panic.
References
  • {'url': 'https://crates.io/crates/w', 'source': 'cve@mitre.org'}
  • {'url': 'https://github.com/', 'source': 'cve@mitre.org'}
  • {'url': 'https://rustsec.org/advisories/', 'source': 'cve@mitre.org'}
  • () https://gitlab.com/sequoia-pgp/sequoia/-/tags/buffered-reader%2Fv1.0.2 -
  • () https://gitlab.com/sequoia-pgp/sequoia/-/tags/buffered-reader%2Fv1.1.5 -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.9
CWE CWE-125

28 Jul 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-28 03:15

Updated : 2025-08-06 21:16


NVD link : CVE-2023-53161

Mitre link : CVE-2023-53161

CVE.ORG link : CVE-2023-53161


JSON object : View

Products Affected

sequoia-pgp

  • buffered-reader
CWE
CWE-125

Out-of-bounds Read