|
208341
|
9.8 |
CRITICAL
Network
|
nanorand_project
|
nanorand
|
An issue was discovered in the nanorand crate before 0.5.1 for Rust. It caused any random number generator (even ChaCha) to return all zeroes because integer truncation was mishandled.
|
CWE-330 CWE-681
Use of Insufficiently Random Values Incorrect Conversion between Numeric Types
|
CVE-2020-35926
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208342
|
5.5 |
MEDIUM
Local
|
magnetic_project
|
magnetic
|
An issue was discovered in the magnetic crate before 2.0.1 for Rust. MPMCConsumer and MPMCProducer allow cross-thread sending of a non-Send type.
|
NVD-CWE-noinfo
|
CVE-2020-35925
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208343
|
5.5 |
MEDIUM
Local
|
try-mutex_project
|
try-mutex
|
An issue was discovered in the try-mutex crate before 0.3.0 for Rust. TryMutex<T> allows cross-thread sending of a non-Send type.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-35924
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208344
|
5.5 |
MEDIUM
Local
|
ordered-float_project
|
ordered-float
|
An issue was discovered in the ordered-float crate before 1.1.1 and 2.x before 2.0.1 for Rust. A NotNan value can contain a NaN.
|
CWE-416
Use After Free
|
CVE-2020-35923
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208345
|
5.5 |
MEDIUM
Local
|
mio_project
|
mio
|
An issue was discovered in the mio crate before 0.7.6 for Rust. It has false expectations about the std::net::SocketAddr memory representation.
|
NVD-CWE-noinfo
|
CVE-2020-35922
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208346
|
5.5 |
MEDIUM
Local
|
miow_project
|
miow
|
An issue was discovered in the miow crate before 0.3.6 for Rust. It has false expectations about the std::net::SocketAddr memory representation.
|
NVD-CWE-noinfo
|
CVE-2020-35921
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208347
|
5.5 |
MEDIUM
Local
|
rust-lang
|
socket2
|
An issue was discovered in the socket2 crate before 0.3.16 for Rust. It has false expectations about the std::net::SocketAddr memory representation.
|
NVD-CWE-noinfo
|
CVE-2020-35920
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208348
|
5.5 |
MEDIUM
Local
|
net2_project
|
net2
|
An issue was discovered in the net2 crate before 0.2.36 for Rust. It has false expectations about the std::net::SocketAddr memory representation.
|
NVD-CWE-noinfo
|
CVE-2020-35919
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208349
|
5.5 |
MEDIUM
Local
|
hakobaito
|
branca
|
An issue was discovered in the branca crate before 0.10.0 for Rust. Decoding tokens (with invalid base62 data) can panic.
|
NVD-CWE-noinfo
|
CVE-2020-35918
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208350
|
5.5 |
MEDIUM
Local
|
pyo3_project
|
pyo3
|
An issue was discovered in the pyo3 crate before 0.12.4 for Rust. There is a reference-counting error and use-after-free in From<Py<T>>.
|
CWE-416
Use After Free
|
CVE-2020-35917
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|