Skip to main content

Vendor archive

nanopb_project CVEs

Beta · best-effort

4 CVEs tagged to vendor nanopb_project1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2021-21401

Published Mar 23, 2021

Nanopb is a small code-size Protocol Buffers implementation in ansi C. In Nanopb before versions 0.3.9.8 and 0.4.5, decoding a specifically formed message can cause invalid `free(…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-26243

Published Nov 25, 2020

Nanopb is a small code-size Protocol Buffers implementation. In Nanopb before versions 0.4.4 and 0.3.9.7, decoding specifically formed message can leak memory if dynamic allocatio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-5235

Published Feb 4, 2020

There is a potentially exploitable out of memory condition In Nanopb before 0.4.1, 0.3.9.5, and 0.2.9.4. When nanopb is compiled with PB_ENABLE_MALLOC, the message to be decoded c…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1