|
196821
|
9.8 |
CRITICAL
Network
|
containers_project
|
containers
|
An issue was discovered in the containers crate before 0.9.11 for Rust. When a panic occurs, a util::{mutate,mutate2} double drop can be performed.
|
CWE-415
Double Free
|
CVE-2021-25907
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196822
|
7.5 |
HIGH
Network
|
basic_dsp_matrix_project
|
basic_dsp_matrix
|
An issue was discovered in the basic_dsp_matrix crate before 0.9.2 for Rust. When a TransformContent panic occurs, a double drop can be performed.
|
NVD-CWE-noinfo
|
CVE-2021-25906
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196823
|
9.1 |
CRITICAL
Network
|
bra_project
|
bra
|
An issue was discovered in the bra crate before 0.1.1 for Rust. It lacks soundness because it can read uninitialized memory.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2021-25905
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196824
|
7.5 |
HIGH
Network
|
av-data_project
|
av-data
|
An issue was discovered in the av-data crate before 0.3.0 for Rust. A raw pointer is dereferenced, leading to a read of an arbitrary memory address, sometimes causing a segfault.
|
CWE-476
NULL Pointer Dereference
|
CVE-2021-25904
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196825
|
7.5 |
HIGH
Network
|
cache_project
|
cache
|
An issue was discovered in the cache crate through 2021-01-01 for Rust. A raw pointer is dereferenced.
|
CWE-476
NULL Pointer Dereference
|
CVE-2021-25903
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196826
|
7.5 |
HIGH
Network
|
glsl-layout_project
|
glsl-layout
|
An issue was discovered in the glsl-layout crate before 0.4.0 for Rust. When a panic occurs, map_array can perform a double drop.
|
NVD-CWE-noinfo
|
CVE-2021-25902
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196827
|
5.3 |
MEDIUM
Network
|
lazy-init_project
|
lazy-init
|
An issue was discovered in the lazy-init crate through 2021-01-17 for Rust. Lazy lacks a Send bound, leading to a data race.
|
NVD-CWE-noinfo CWE-125
Out-of-bounds Read
|
CVE-2021-25901
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196828
|
9.8 |
CRITICAL
Network
|
servo
|
smallvec
|
An issue was discovered in the smallvec crate before 0.6.14 and 1.x before 1.6.1 for Rust. There is a heap-based buffer overflow in SmallVec::insert_many.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-25900
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196829
|
7.5 |
HIGH
Network
|
dgtl
|
huemagic
|
node-red-contrib-huemagic 3.0.0 is affected by hue/assets/..%2F Directory Traversal.in the res.sendFile API, used in file hue-magic.js, to fetch an arbitrary file.
|
CWE-22
Path Traversal
|
CVE-2021-25864
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196830
|
8.8 |
HIGH
Adjacent
|
open5gs
|
open5gs
|
Open5GS 2.1.3 listens on 0.0.0.0:3000 and has a default password of 1423 for the admin account.
|
CWE-287
Improper Authentication
|
CVE-2021-25863
|
2024-11-21 14:55 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|