Severity: moderate

Description:

It is possible for a Reader to consume memory beyond the allowed constraints 
and thus lead to out of memory on the system. This issue affects Rust 
applications using Apache Avro Rust SDK prior to 0.14.0 (previously known as 
avro-rs).  Users should update to apache-avro version 0.14.0 which addresses 
this issue.

Credit:

This issue was reported to the Apache Avro team by Evan Richter at ForAllSecure 
and found with Mayhem.

Reply via email to