Search CVE reports


Toggle filters

21 – 28 of 28 results


CVE-2020-36317

Medium priority

Some fixes available 1 of 7

In the standard library in Rust before 1.49.0, String::retain() function has a panic safety problem. It allows creation of a non-UTF-8 Rust string when the provided closure panics. This bug could result in a memory...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected Not affected Fixed Not affected
Show less packages

CVE-2015-20001

Medium priority
Not affected

In the standard library in Rust before 1.2.0, BinaryHeap is not panic-safe. The binary heap is left in an inconsistent state when the comparison of generic elements inside sift_up or sift_down_range panics. This bug leads to a...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected Not affected
Show less packages

CVE-2019-16760

Medium priority
Not affected

Cargo prior to Rust 1.26.0 may download the wrong dependency if your package.toml file uses the `package` configuration key. Usage of the `package` key to rename dependencies in `Cargo.toml` is ignored in Rust 1.25.0 and prior....

2 affected packages

cargo, rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cargo Not affected
rustc Not affected
Show less packages

CVE-2019-1010299

Medium priority
Not affected

The Rust Programming Language Standard Library 1.18.0 and later is affected by: CWE-200: Information Exposure. The impact is: Contents of uninitialized memory could be printed to string or to log file. The component is:...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected
Show less packages

CVE-2019-12083

Medium priority
Not affected

The Rust Programming Language Standard Library 1.34.x before 1.34.2 contains a stabilized method which, if overridden, can violate Rust's safety guarantees and cause memory unsafety. If the `Error::type_id` method is overridden...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected
Show less packages

CVE-2018-1000810

Medium priority
Not affected

The Rust Programming Language Standard Library version 1.29.0, 1.28.0, 1.27.2, 1.27.1, 127.0, 126.2, 126.1, 126.0 contains a CWE-680: Integer Overflow to Buffer Overflow vulnerability in standard library that can result in buffer...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected
Show less packages

CVE-2018-1000657

Medium priority
Not affected

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected
Show less packages

CVE-2018-1000622

Medium priority
Ignored

The Rust Programming Language rustdoc version Between 0.8 and 1.27.0 contains a CWE-427: Uncontrolled Search Path Element vulnerability in rustdoc plugins that can result in local code execution as a different user. This attack...

1 affected package

rustc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rustc Not affected
Show less packages