HistoryEditJSON (OSV)

RUSTSEC-2025-0065

matrix-sdk-base: Panic in the RoomMember::normalized_power_level() method

Reported
Issued
Package
matrix-sdk-base (crates.io)
Type
Vulnerability
Aliases
References
Patched
  • >=0.14.1
Affected Functions
Version
matrix_sdk_base::RoomMember::normalized_power_level
  • <=0.14.0

Description

In matrix-sdk-base before 0.14.1, calling the RoomMember::normalized_power_level() method can cause a panic if a room member has a power level of Int::Min.

Advisory available under CC0-1.0 license.