Uncontrolled Recursion in Protobuf Crate for Rust
CVE-2025-53605
5.9MEDIUM
What is CVE-2025-53605?
The Protobuf crate for Rust, prior to version 3.7.2, is susceptible to uncontrolled recursion when handling unknown fields during input parsing. This vulnerability can occur due to the improper handling of untrusted input, allowing for potential resource exhaustion and denial of service conditions. Developers utilizing this crate should upgrade to the latest version to mitigate this issue and ensure secure data handling.
Affected Version(s)
protobuf 0 < 3.7.2