An issue was discovered in the actix-web crate before 0.7.15 for Rust. It can add the Send marker trait to an object that cannot be sent between threads safely, leading to memory corruption.
References
Link | Resource |
---|---|
https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/actix-web/RUSTSEC-2018-0019.md | Third Party Advisory |
https://rustsec.org/advisories/RUSTSEC-2018-0019.html | Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2021-12-26 16:15
Updated : 2022-01-05 07:31
NVD link : CVE-2018-25026
Mitre link : CVE-2018-25026
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
actix
- actix-web