Home
LOW: 3.2 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:NDefault status
unaffected
Any version before 14.0.0
affected
Description
uuid before 14.0.0 can make unexpected writes when external output buffers are used, and the UUID version is 3, 5, or 6. In particular, UUID version 4, which is very commonly used, is unaffected by this issue.
Problem types
CWE-670 Always-Incorrect Control Flow Implementation
Product status
Any version before 14.0.0
References
github.com/...s/uuid/security/advisories/GHSA-w5hq-g745-h8pq
github.com/...s/uuid/security/advisories/GHSA-w5hq-g745-h8pq
github.com/...ommit/3d2c5b0342f0fcb52a5ac681c3d47c13e7444b34