CVE-2023-33290 Information

Description

The git-url-parse crate through 0.4.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to normalize_url in lib.rs a similar issue to CVE-2023-32758 (Python).

Reference

https://lib.rs/crates/git-url-parse https://lib.rs/crates/git-url-parse https://github.com/tjtelan/git-url-parse-rs/issues/51 https://github.com/tjtelan/git-url-parse-rs/issues/51 The git-url-parse crate through 0.4.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to normalize_url in lib.rs a similar issue to CVE-2023-32758 (Python).

Share on: