Описание
scaly: Multiple soundness issues in Rust safe APIs
Affected versions contain multiple safe APIs that can trigger undefined behavior:
Array<T>::indexcan perform an out-of-bounds read.String::get_lengthcan perform an out-of-bounds read.String::append_charactercan perform an invalid write.String::to_c_stringcan perform an out-of-bounds write.
These issues were reproduced against scaly 0.0.37 under Miri. The crate is unmaintained.
Пакеты
Наименование
scaly
rust
Затронутые версииВерсия исправления
<= 0.0.37
Отсутствует
8.7 High
CVSS4
Дефекты
CWE-125
CWE-787
8.7 High
CVSS4
Дефекты
CWE-125
CWE-787