Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-686h-j8r8-wmfm

Опубликовано: 25 авг. 2021
Источник: github
Github: Прошло ревью
CVSS3: 8.1

Описание

Data races in rcu_cell

Affected versions of this crate unconditionally implement Send/Sync for RcuCell<T>. This allows users to send T: !Send to other threads (while T enclosed within RcuCell<T>), and allows users to concurrently access T: !Sync by using the APIs of RcuCell<T> that provide access to &T.

This can result in memory corruption caused by data races.

Пакеты

Наименование

rcu_cell

rust
Затронутые версииВерсия исправления

< 0.1.9

0.1.9

EPSS

Процентиль: 66%
0.00513
Низкий

8.1 High

CVSS3

Дефекты

CWE-362
CWE-77

Связанные уязвимости

CVSS3: 8.1
nvd
больше 4 лет назад

An issue was discovered in the rcu_cell crate through 2020-11-14 for Rust. There are unconditional implementations of Send and Sync for RcuCell<T>.

EPSS

Процентиль: 66%
0.00513
Низкий

8.1 High

CVSS3

Дефекты

CWE-362
CWE-77