Uninitialized Buffer Issue in libp2p-deflate Crate Affects Rust Applications
CVE-2020-36443
9.8CRITICAL
What is CVE-2020-36443?
An issue was identified in the libp2p-deflate crate affecting versions prior to 0.27.1, where an uninitialized buffer is used in the AsyncRead::poll_read() function. This flaw can be exploited in applications utilizing this crate, potentially leading to unexpected behavior or data leaks.
