Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skips setting the length to zero.
CVSS Details
- CVSS 3.1 Base Score: 5.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade rust-gdbUpgrade rust-toolset-srpm-macrosUpgrade rust-analyzerUpgrade thunderbirdUpgrade rust-toolsetUpgrade firefoxUpgrade rustUpgrade rustfmtUpgrade clippyUpgrade rust-debugger-commonUpgrade cargoUpgrade rust-srcUpgrade rust-std-staticUpgrade rust-doc | May 20, 2026 | May 20, 2026 |
| Amazon_linux_2023 | — | Upgrade rust-std-staticUpgrade rust-toolset-srpm-macrosUpgrade rust-lldbUpgrade cargo-debuginfoUpgrade clippyUpgrade rust-docUpgrade rustUpgrade rust-debugger-commonUpgrade cargoUpgrade firefox-debugsourceUpgrade clippy-debuginfoUpgrade rustfmt-debuginfoUpgrade rust-std-static-wasm32-unknown-unknownUpgrade rust-gdbUpgrade rust-debuginfoUpgrade firefox-debuginfoUpgrade rust-srcUpgrade rust-analyzerUpgrade rust-std-static-wasm32-wasip1Upgrade rust-debugsourceUpgrade rust-toolsetUpgrade rust-analyzer-debuginfoUpgrade firefoxUpgrade rustfmt | May 19, 2026 | Apr 20, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub