Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6rhx-hqxm-8p36

Опубликовано: 25 авг. 2021
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

Double free in http

An issue was discovered in the http crate before 0.1.20 for Rust. The HeaderMap::Drain API can use a raw pointer, defeating soundness.

Пакеты

Наименование

http

rust
Затронутые версииВерсия исправления

< 0.1.20

0.1.20

EPSS

Процентиль: 60%
0.00402
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-415

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 5 лет назад

An issue was discovered in the http crate before 0.1.20 for Rust. The HeaderMap::Drain API can use a raw pointer, defeating soundness.

CVSS3: 9.8
nvd
около 5 лет назад

An issue was discovered in the http crate before 0.1.20 for Rust. The HeaderMap::Drain API can use a raw pointer, defeating soundness.

CVSS3: 9.8
debian
около 5 лет назад

An issue was discovered in the http crate before 0.1.20 for Rust. The ...

EPSS

Процентиль: 60%
0.00402
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-415