Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skips setting the length to zero.
CVSS Details
- CVSS 3.1 Base Score: 5.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade rust-srcUpgrade rust-std-staticUpgrade rust-docUpgrade cargoUpgrade clippyUpgrade rust-debugger-commonUpgrade rustfmtUpgrade rustUpgrade rust-toolset-srpm-macrosUpgrade thunderbirdUpgrade rust-analyzerUpgrade rust-toolsetUpgrade firefoxUpgrade rust-gdb | May 20, 2026 | May 20, 2026 |
| Amazon_linux_2023 | — | Upgrade rust-std-staticUpgrade rust-docUpgrade clippy-debuginfoUpgrade rust-lldbUpgrade rustUpgrade clippyUpgrade rust-debugger-commonUpgrade firefox-debugsourceUpgrade rust-toolset-srpm-macrosUpgrade rustfmt-debuginfoUpgrade cargo-debuginfoUpgrade cargoUpgrade rust-debuginfoUpgrade firefox-debuginfoUpgrade rust-gdbUpgrade rustfmtUpgrade rust-toolsetUpgrade rust-std-static-wasm32-unknown-unknownUpgrade rust-std-static-wasm32-wasip1Upgrade rust-debugsourceUpgrade rust-analyzer-debuginfoUpgrade firefoxUpgrade rust-srcUpgrade rust-analyzer | May 19, 2026 | Apr 20, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub