Описание
An issue was discovered in the libpulse-binding crate before 1.2.1 for Rust. get_format_info can cause a use-after-free.
Ссылки
- Third Party AdvisoryUS Government Resource
- Third Party Advisory
- Third Party AdvisoryUS Government Resource
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.2.1 (исключая)
cpe:2.3:a:libpulse-binding_project:libpulse-binding:*:*:*:*:*:rust:*:*
EPSS
Процентиль: 61%
0.00414
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-416
Связанные уязвимости
EPSS
Процентиль: 61%
0.00414
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-416