CVE-2023-53156

The transpose crate before 0.2.3 for Rust allows an integer overflow via input_width and input_height arguments.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ejmahler:transpose:*:*:*:*:*:rust:*:*

History

07 Aug 2025, 15:08

Type Values Removed Values Added
First Time Ejmahler transpose
Ejmahler
References () https://crates.io/crates/transpose - () https://crates.io/crates/transpose - Product
References () https://github.com/advisories/GHSA-5gmm-6m36-r7jh - () https://github.com/advisories/GHSA-5gmm-6m36-r7jh - Third Party Advisory
References () https://github.com/ejmahler/transpose/issues/11 - () https://github.com/ejmahler/transpose/issues/11 - Issue Tracking
References () https://rustsec.org/advisories/RUSTSEC-2023-0080.html - () https://rustsec.org/advisories/RUSTSEC-2023-0080.html - Third Party Advisory
CPE cpe:2.3:a:ejmahler:transpose:*:*:*:*:*:rust:*:*

29 Jul 2025, 14:14

Type Values Removed Values Added
Summary
  • (es) El paquete de transpose para Rust anterior a la versión 0.2.3 permite un desbordamiento de enteros a través de los argumentos input_width y input_height.

27 Jul 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-27 21:15

Updated : 2025-08-07 15:08


NVD link : CVE-2023-53156

Mitre link : CVE-2023-53156

CVE.ORG link : CVE-2023-53156


JSON object : View

Products Affected

ejmahler

  • transpose
CWE
CWE-190

Integer Overflow or Wraparound