Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q2gj-9r85-p832

Опубликовано: 25 авг. 2021
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

Data races in rulinalg

The affected version of rulinalg has incorrect lifetime boundary definitions for RowMut::raw_slice and RowMut::raw_slice_mut. They do not conform with Rust's borrowing rule and allows the user to create multiple mutable references to the same location. This may result in unexpected calculation result and data race if both references are used at the same time.

Пакеты

Наименование

rulinalg

rust
Затронутые версииВерсия исправления

>= 0.4.0, <= 0.4.2

Отсутствует

EPSS

Процентиль: 62%
0.00433
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 9.8
nvd
около 5 лет назад

An issue was discovered in the rulinalg crate through 2020-02-11 for Rust. There are incorrect lifetime-boundary definitions for RowMut::raw_slice and RowMut::raw_slice_mut.

EPSS

Процентиль: 62%
0.00433
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-362