|
193991
|
9.6 |
CRITICAL
Network
|
marktext
|
marktext
|
Mark Text through 0.16.3 allows attackers arbitrary command execution. This could lead to Remote Code Execution (RCE) by opening .md files containing a mutation Cross Site Scripting (XSS) payload.
|
CWE-79
Cross-site Scripting
|
CVE-2021-29996
|
2024-11-21 15:02 |
2021-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193992
|
7.3 |
HIGH
Network
|
reorder_project
|
reorder
|
An issue was discovered in the reorder crate through 2021-02-24 for Rust. swap_index can return uninitialized values if an iterator returns a len() that is too large.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-29942
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193993
|
7.3 |
HIGH
Network
|
reorder_project
|
reorder
|
An issue was discovered in the reorder crate through 2021-02-24 for Rust. swap_index has an out-of-bounds write if an iterator returns a len() that is too small.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-29941
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193994
|
9.8 |
CRITICAL
Network
|
through_project
|
through
|
An issue was discovered in the through crate through 2021-02-18 for Rust. There is a double free (in through and through_and) upon a panic of the map function.
|
CWE-415
Double Free
|
CVE-2021-29940
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193995
|
7.3 |
HIGH
Network
|
stackvector_project
|
stackvector
|
An issue was discovered in the stackvector crate through 2021-02-19 for Rust. There is an out-of-bounds write in StackVec::extend if size_hint provides certain anomalous data.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-29939
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193996
|
7.5 |
HIGH
Network
|
slice-deque_project
|
slice-deque
|
An issue was discovered in the slice-deque crate through 2021-02-19 for Rust. A double drop can occur in SliceDeque::drain_filter upon a panic in a predicate function.
|
CWE-415
Double Free
|
CVE-2021-29938
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193997
|
9.8 |
CRITICAL
Network
|
telemetry_project
|
telemetry
|
An issue was discovered in the telemetry crate through 2021-02-17 for Rust. There is a drop of uninitialized memory if a value.clone() call panics within misc::vec_with_size().
|
CWE-908
Use of Uninitialized Resource
|
CVE-2021-29937
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193998
|
9.8 |
CRITICAL
Network
|
adtensor_project
|
adtensor
|
An issue was discovered in the adtensor crate through 2021-01-11 for Rust. There is a drop of uninitialized memory via the FromIterator implementation for Vector and Matrix.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2021-29936
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193999
|
7.3 |
HIGH
Network
|
rocket
|
rocket
|
An issue was discovered in the rocket crate before 0.4.7 for Rust. uri::Formatter can have a use-after-free if a user-provided function panics.
|
CWE-416
Use After Free
|
CVE-2021-29935
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194000
|
7.3 |
HIGH
Network
|
uu_od_project
|
uu_od
|
An issue was discovered in PartialReader in the uu_od crate before 0.0.4 for Rust. Attackers can read the contents of uninitialized memory locations via a user-provided Read operation.
|
CWE-125 CWE-908
Out-of-bounds Read Use of Uninitialized Resource
|
CVE-2021-29934
|
2024-11-21 15:02 |
2021-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|