|
199731
|
9.8 |
CRITICAL
Network
|
stack_project
|
stack
|
An issue was discovered in the stack crate before 0.3.1 for Rust. ArrayVec has an out-of-bounds write via element insertion.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-35895
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199732
|
7.5 |
HIGH
Network
|
obstack_project
|
obstack
|
An issue was discovered in the obstack crate before 0.1.4 for Rust. Unaligned references can occur.
|
CWE-706
Use of Incorrectly-Resolved Name or Reference
|
CVE-2020-35894
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199733
|
7.5 |
HIGH
Network
|
simple-slab_project
|
simple-slab
|
An issue was discovered in the simple-slab crate before 0.3.3 for Rust. remove() has an off-by-one error, causing memory leakage and a drop of uninitialized memory.
|
CWE-193 CWE-401 CWE-908
Off-by-one Error Missing Release of Memory after Effective Lifetime Use of Uninitialized Resource
|
CVE-2020-35893
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199734
|
9.1 |
CRITICAL
Network
|
simple-slab_project
|
simple-slab
|
An issue was discovered in the simple-slab crate before 0.3.3 for Rust. index() allows an out-of-bounds read.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-35892
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199735
|
7.5 |
HIGH
Network
|
ordnung_project
|
ordnung
|
An issue was discovered in the ordnung crate through 2020-09-03 for Rust. compact::Vec violates memory safety via a remove() double free.
|
CWE-415
Double Free
|
CVE-2020-35891
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199736
|
7.5 |
HIGH
Network
|
ordnung_project
|
ordnung
|
An issue was discovered in the ordnung crate through 2020-09-03 for Rust. compact::Vec violates memory safety via out-of-bounds access for large capacity.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-35890
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199737
|
8.1 |
HIGH
Network
|
crayon_project
|
crayon
|
An issue was discovered in the crayon crate through 2020-08-31 for Rust. A TOCTOU issue has a resultant memory safety violation via HandleLike.
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2020-35889
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199738
|
9.8 |
CRITICAL
Network
|
arr_project
|
arr
|
An issue was discovered in the arr crate through 2020-08-25 for Rust. Uninitialized memory is dropped by Array::new_from_template.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-35888
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199739
|
9.8 |
CRITICAL
Network
|
arr_project
|
arr
|
An issue was discovered in the arr crate through 2020-08-25 for Rust. There is a buffer overflow in Index and IndexMut.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-35887
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199740
|
4.7 |
MEDIUM
Local
|
arr_project
|
arr
|
An issue was discovered in the arr crate through 2020-08-25 for Rust. An attacker can smuggle non-Sync/Send types across a thread boundary to cause a data race.
|
CWE-362
Race Condition
|
CVE-2020-35886
|
2024-11-21 14:28 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|