|
197921
|
7.5 |
HIGH
Network
|
ws-rs_project
|
ws-rs
|
An issue was discovered in the ws crate through 2020-09-25 for Rust. The outgoing buffer is not properly limited, leading to a remote memory-consumption attack.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2020-35896
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197922
|
9.8 |
CRITICAL
Network
|
stack_project
|
stack
|
An issue was discovered in the stack crate before 0.3.1 for Rust. ArrayVec has an out-of-bounds write via element insertion.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-35895
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197923
|
7.5 |
HIGH
Network
|
obstack_project
|
obstack
|
An issue was discovered in the obstack crate before 0.1.4 for Rust. Unaligned references can occur.
|
CWE-706
Use of Incorrectly-Resolved Name or Reference
|
CVE-2020-35894
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197924
|
7.5 |
HIGH
Network
|
simple-slab_project
|
simple-slab
|
An issue was discovered in the simple-slab crate before 0.3.3 for Rust. remove() has an off-by-one error, causing memory leakage and a drop of uninitialized memory.
|
CWE-193 CWE-401 CWE-908
Off-by-one Error Missing Release of Memory after Effective Lifetime Use of Uninitialized Resource
|
CVE-2020-35893
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197925
|
9.1 |
CRITICAL
Network
|
simple-slab_project
|
simple-slab
|
An issue was discovered in the simple-slab crate before 0.3.3 for Rust. index() allows an out-of-bounds read.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-35892
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197926
|
7.5 |
HIGH
Network
|
ordnung_project
|
ordnung
|
An issue was discovered in the ordnung crate through 2020-09-03 for Rust. compact::Vec violates memory safety via a remove() double free.
|
CWE-415
Double Free
|
CVE-2020-35891
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197927
|
7.5 |
HIGH
Network
|
ordnung_project
|
ordnung
|
An issue was discovered in the ordnung crate through 2020-09-03 for Rust. compact::Vec violates memory safety via out-of-bounds access for large capacity.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-35890
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197928
|
8.1 |
HIGH
Network
|
crayon_project
|
crayon
|
An issue was discovered in the crayon crate through 2020-08-31 for Rust. A TOCTOU issue has a resultant memory safety violation via HandleLike.
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2020-35889
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197929
|
9.8 |
CRITICAL
Network
|
arr_project
|
arr
|
An issue was discovered in the arr crate through 2020-08-25 for Rust. Uninitialized memory is dropped by Array::new_from_template.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-35888
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197930
|
9.8 |
CRITICAL
Network
|
arr_project
|
arr
|
An issue was discovered in the arr crate through 2020-08-25 for Rust. There is a buffer overflow in Index and IndexMut.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-35887
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|