vulnerability

Rocky Linux: CVE-2021-28876: rust-toolset-rhel8 (RLSA-2021-3063)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Apr 11, 2021
Added
May 5, 2022
Modified
Aug 28, 2024

Description

In the standard library in Rust before 1.52.0, the Zip implementation has a panic safety issue. It calls __iterator_get_unchecked() more than once for the same index when the underlying iterator panics (in certain conditions). This bug could lead to a memory safety violation due to an unmet safety requirement for the TrustedRandomAccess trait.

Solution(s)

rocky-upgrade-cargorocky-upgrade-cargo-debuginforocky-upgrade-clippyrocky-upgrade-clippy-debuginforocky-upgrade-rlsrocky-upgrade-rls-debuginforocky-upgrade-rustrocky-upgrade-rust-analysisrocky-upgrade-rust-debuginforocky-upgrade-rust-debugsourcerocky-upgrade-rust-docrocky-upgrade-rust-std-staticrocky-upgrade-rust-toolsetrocky-upgrade-rustfmtrocky-upgrade-rustfmt-debuginfo
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.