Skip to content
Fedora 43: Critical Vulnerabilities in rust-reqsign Identified

Fedora 43: Critical Vulnerabilities in rust-reqsign Identified

First seen 10 Nov 2025, 11:58 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

Fedora 43 has reported critical vulnerabilities in the rust-reqsign library affecting HTTP request signing for major cloud services including AWS, Azure, and Google. The vulnerabilities include a critical signing issue and a denial-of-service threat linked to a Tokio-based file reader implementation. A patch release, Pydantic 2.12.4, has been issued to address these issues.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

More articles in this cluster (3)