An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2020-0048.html | Exploit Patch Third Party Advisory |
Configurations
Information
Published : 2020-12-31 01:15
Updated : 2021-01-07 08:48
NVD link : CVE-2020-35901
Mitre link : CVE-2020-35901
JSON object : View
CWE
CWE-416
Use After Free
Products Affected
actix
- actix-http