Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-25576

Опубликовано: 14 сент. 2020
Источник: debian

Описание

An issue was discovered in the rand_core crate before 0.4.2 for Rust. Casting of byte slices to integer slices mishandles alignment constraints.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rust-rand-corefixed0.5.0-1package
rust-rand-coreignoredbusterpackage
rust-rand-core-0.3removedpackage
rust-rand-core-0.2removedpackage
rust-rand-core-0.2ignoredbusterpackage

Примечания

  • https://rustsec.org/advisories/RUSTSEC-2019-0035.html

  • https://github.com/rust-random/rand/blob/master/rand_core/CHANGELOG.md#050---2019-06-06

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 6 лет назад

An issue was discovered in the rand_core crate before 0.4.2 for Rust. Casting of byte slices to integer slices mishandles alignment constraints.

CVSS3: 9.8
nvd
почти 6 лет назад

An issue was discovered in the rand_core crate before 0.4.2 for Rust. Casting of byte slices to integer slices mishandles alignment constraints.

CVSS3: 9.8
msrc
почти 2 года назад

Описание отсутствует

CVSS3: 9.8
github
почти 5 лет назад

Unaligned memory access in rand_core