Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-9qxh-258v-666c: owning_ref vulnerable to multiple soundness issues

  • OwningRef::map_with_owner is unsound and may result in a use-after-free.
  • OwningRef::map is unsound and may result in a use-after-free.
  • OwningRefMut::as_owner and OwningRefMut::as_owner_mut are unsound and may result in a use-after-free.
  • The crate violates Rust’s aliasing rules, which may cause miscompilations on recent compilers that emit the LLVM noalias attribute.

No patched versions are available at this time. While a pull request with some fixes is outstanding, the maintainer appears to be unresponsive.

ghsa
#git

owning_ref vulnerable to multiple soundness issues

Moderate severity GitHub Reviewed Published Aug 10, 2022 • Updated Aug 10, 2022

ghsa: Latest News

GHSA-27wf-5967-98gx: Kubernetes kubelet arbitrary command execution