Description
An issue was discovered in Deserializer::read_vec in the cdr crate before 0.2.4 for Rust. A user-provided Read implementation can gain access to the old contents of newly allocated heap memory, violating soundness.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1535 | An issue was discovered in Deserializer::read_vec in the cdr crate before 0.2.4 for Rust. A user-provided Read implementation can gain access to the old contents of newly allocated heap memory, violating soundness. |
Github GHSA |
GHSA-37jj-wp7g-7wj4 | Read of uninitialized memory in cdr |
References
| Link | Providers |
|---|---|
| https://rustsec.org/advisories/RUSTSEC-2021-0012.html |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T20:19:20.130Z
Reserved: 2021-01-29T00:00:00.000Z
Link: CVE-2021-26305
No data.
Status : Modified
Published: 2021-01-29T03:15:12.363
Modified: 2024-11-21T05:56:03.093
Link: CVE-2021-26305
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA