An issue was discovered in the sized-chunks crate through 0.6.2 for Rust. In the Chunk implementation, insert_from can have a memory-safety issue upon a panic.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2020-0041.html | Third Party Advisory |
https://github.com/bodil/sized-chunks/issues/11 | Exploit Patch Third Party Advisory |
Configurations
Information
Published : 2020-09-19 14:15
Updated : 2021-01-12 05:43
NVD link : CVE-2020-25795
Mitre link : CVE-2020-25795
JSON object : View
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
Products Affected
sized-chunks_project
- sized-chunks