-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability was specifically traced to the AVX2 backend's data loading implementation in the pull request analysis. The load_data_avx2 macro's incorrect memory addressing (using adjacent indices rather than offset-by-8 indices) directly caused miscomputation when processing multiple blocks. This matches the advisory's description of failures with long messages and the subsequent fix in the referenced commit.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| sha2 | rust | = 0.9.7 | 0.9.8 |
Ongoing coverage of React2Shell