Описание
In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a use-after-free or double free.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | not-affected | 1.51.0+dfsg1+llvm-1~exp3ubuntu1~18.04.1 |
| devel | DNE | |
| esm-apps/bionic | not-affected | 1.51.0+dfsg1+llvm-1~exp3ubuntu1~18.04.1 |
| esm-apps/focal | not-affected | 1.51.0+dfsg1+llvm-1~exp3ubuntu1~20.04.2 |
| esm-apps/xenial | needed | |
| esm-infra-legacy/trusty | needed | |
| focal | not-affected | 1.51.0+dfsg1+llvm-1~exp3ubuntu1~20.04.2 |
| groovy | ignored | end of life |
| hirsute | ignored | end of life |
| impish | not-affected | 1.51.0+dfsg1+llvm-1~exp3ubuntu1 |
Показывать по
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a use-after-free or double free.
In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a use-after-free or double free.
In the standard library in Rust before 1.49.0, VecDeque::make_contiguo ...
In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a use-after-free or double free.
7.5 High
CVSS2
9.8 Critical
CVSS3