Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-1000657

Опубликовано: 20 авг. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6
CVSS3: 7.8

Описание

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vec_deque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published.. This vulnerability appears to have been fixed in after commit fdfafb510b1a38f727e920dccbeeb638d39a8e60; stable release 1.22.0 and later.

РелизСтатусПримечание
bionic

not-affected

1.25.0+dfsg1+llvm-0ubuntu1
devel

not-affected

1.28.0+dfsg1+llvm-0ubuntu1
esm-apps/bionic

not-affected

1.25.0+dfsg1+llvm-0ubuntu1
esm-apps/xenial

not-affected

1.25.0+dfsg1+llvm-0ubuntu1~16.04.1
esm-infra-legacy/trusty

not-affected

1.25.0+dfsg1+llvm-0ubuntu1~14.04.1
precise/esm

DNE

trusty

not-affected

1.25.0+dfsg1+llvm-0ubuntu1~14.04.1
trusty/esm

not-affected

1.25.0+dfsg1+llvm-0ubuntu1~14.04.1
upstream

released

1.22.1+dfsg1-1
xenial

not-affected

1.25.0+dfsg1+llvm-0ubuntu1~16.04.1

Показывать по

EPSS

Процентиль: 36%
0.00152
Низкий

4.6 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
redhat
больше 7 лет назад

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vec_deque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published.. This vulnerability appears to have been fixed in after commit fdfafb510b1a38f727e920dccbeeb638d39a8e60; stable release 1.22.0 and later.

CVSS3: 7.8
nvd
больше 7 лет назад

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vec_deque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published.. This vulnerability appears to have been fixed in after commit fdfafb510b1a38f727e920dccbeeb638d39a8e60; stable release 1.22.0 and later.

CVSS3: 7.8
debian
больше 7 лет назад

Rust Programming Language Rust standard library version Commit bfa0e1f ...

CVSS3: 7.8
github
больше 3 лет назад

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vec_deque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published.. This vulnerability appears to have been fixed in after commit fdfafb510b1a38f727e920dccbeeb638d39a8e60; stable release 1.22.0 and later.

EPSS

Процентиль: 36%
0.00152
Низкий

4.6 Medium

CVSS2

7.8 High

CVSS3