An issue was discovered in the abox crate before 0.4.1 for Rust. It implements Send and Sync for AtomicBox<T> with no requirement for T: Send and T: Sync.
References
Link | Resource |
---|---|
https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/abox/RUSTSEC-2020-0121.md | Third Party Advisory |
https://rustsec.org/advisories/RUSTSEC-2020-0121.html | Third Party Advisory |
Configurations
Information
Published : 2021-08-07 23:15
Updated : 2021-08-17 08:13
NVD link : CVE-2020-36441
Mitre link : CVE-2020-36441
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
abox_project
- abox