CVE-2020-36449 is a high-severity vulnerability affecting the kekbit crate for Rust, specifically versions prior to 0.3.4. The issue lies in the ShmWriter<H> implementation, which incorrectly allows Send without requiring H: Send, potentially leading to memory corruption or other undefined behavior. With a CVSS score of 8.1, this vulnerability is network-exploitable with high impact on confidentiality, integrity, and availability, though it requires high attack complexity. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.3.4CPE matchmatch criteria | cpe:2.3:a:kekbit_project:kekbit:*:*:*:*:*:rust:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.