{"id":"CVE-2020-25795","aliases":["CVE-2020-25791","CVE-2020-25792","CVE-2020-25793","CVE-2020-25794","CVE-2020-25796","GHSA-64gv-qg2v-vxv6","GHSA-9p9m-9xww-qjcx","GHSA-fqpx-cq8x-9wp4","GHSA-mp6f-p9gp-vpj9","GHSA-rfgg-vccr-m46m","GHSA-x54v-qxxr-93qc","RUSTSEC-2020-0041"],"url":"https://o3.security/vulnerability/CVE-2020-25795","summary":"Array size is not checked in sized-chunks","details":"An issue was discovered in the sized-chunks crate through 0.6.2 for Rust. In the Chunk implementation, insert_from can have a memory-safety issue upon a panic.","published":"2020-09-19T21:15:12.437Z","modified":"2026-07-08T20:29:44.090861Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":{"score":0.01719,"percentile":0.75346,"asOf":"2026-08-23"},"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"crates.io","name":"sized-chunks","fixedVersion":"0.6.3"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://rustsec.org/advisories/RUSTSEC-2020-0041.html"},{"type":"FIX","url":"https://github.com/bodil/sized-chunks/issues/11"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-08T20:29:44.090861Z"}}