|
197741
|
7.0 |
HIGH
Local
|
devolutions
|
gfwx
|
An issue was discovered in the gfwx crate before 0.3.0 for Rust. Because ImageChunkMut does not have bounds on its Send trait or Sync trait, a data race and memory corruption can occur.
|
CWE-787 CWE-662
Out-of-bounds Write Improper Synchronization
|
CVE-2020-36211
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197742
|
7.8 |
HIGH
Local
|
autorand_project
|
autorand
|
An issue was discovered in the autorand crate before 0.2.3 for Rust. Because of impl Random on arrays, uninitialized memory can be dropped when a panic occurs, leading to memory corruption.
|
CWE-787 CWE-908
Out-of-bounds Write Use of Uninitialized Resource
|
CVE-2020-36210
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197743
|
7.0 |
HIGH
Local
|
late-static_project
|
late-static
|
An issue was discovered in the late-static crate before 0.4.0 for Rust. Because Sync is implemented for LateStatic with T: Send, a data race can occur.
|
NVD-CWE-noinfo
|
CVE-2020-36209
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197744
|
7.8 |
HIGH
Local
|
conquer-once_project
|
conquer-once
|
An issue was discovered in the conquer-once crate before 0.3.2 for Rust. Thread crossing can occur for a non-Send but Sync type, leading to memory corruption.
|
CWE-787 CWE-662
Out-of-bounds Write Improper Synchronization
|
CVE-2020-36208
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197745
|
7.0 |
HIGH
Local
|
aovec_project
|
aovec
|
An issue was discovered in the aovec crate through 2020-12-10 for Rust. Because Aovec<T> does not have bounds on its Send trait or Sync trait, a data race and memory corruption can occur.
|
CWE-787 CWE-662
Out-of-bounds Write Improper Synchronization
|
CVE-2020-36207
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197746
|
7.0 |
HIGH
Local
|
rusb_project
|
rusb
|
An issue was discovered in the rusb crate before 0.7.0 for Rust. Because of a lack of Send and Sync bounds, a data race and memory corruption can occur.
|
CWE-787 CWE-662
Out-of-bounds Write Improper Synchronization
|
CVE-2020-36206
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197747
|
5.5 |
MEDIUM
Local
|
xcb_project
|
xcb
|
An issue was discovered in the xcb crate through 2020-12-10 for Rust. base::Error does not have soundness. Because of the public ptr field, a use-after-free or double-free can occur.
|
CWE-415 CWE-416
Double Free Use After Free
|
CVE-2020-36205
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197748
|
4.7 |
MEDIUM
Local
|
im_project
|
im
|
An issue was discovered in the im crate through 2020-11-09 for Rust. Because TreeFocus does not have bounds on its Send trait or Sync trait, a data race can occur.
|
NVD-CWE-noinfo
|
CVE-2020-36204
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197749
|
4.7 |
MEDIUM
Local
|
reffers_project
|
reffers
|
An issue was discovered in the reffers crate through 2020-12-01 for Rust. ARefss can contain a !Send,!Sync object, leading to a data race and memory corruption.
|
CWE-362 CWE-787
Race Condition Out-of-bounds Write
|
CVE-2020-36203
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197750
|
6.1 |
MEDIUM
Network
|
rust-lang
|
async-h1
|
An issue was discovered in the async-h1 crate before 2.3.0 for Rust. Request smuggling can occur when used behind a reverse proxy.
|
CWE-79
Cross-site Scripting
|
CVE-2020-36202
|
2024-11-21 14:29 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|