RUSTSEC-2021-0145: Potential unaligned read
- Dominant language
- Rust
- Stars
- 5
- Forks
- 4
- PR merge metrics
- No merged PRs in 30d
Description
> Potential unaligned read
| Details | |
| ------------------- | ---------------------------------------------- |
| Status | unsound |
| Package | `atty` |
| Version | `0.2.14` |
| URL | [https://github.com/softprops/atty/issues/50](https://github.com/softprops/atty/issues/50) |
| Date | 2021-07-04 |
On windows, `atty` dereferences a potentially unaligned pointer.
In practice however, the pointer won't be unaligned unless a custom global allocator is used.
In particular, the `System` allocator on windows uses `HeapAlloc`, which guarantees a large enough alignment.
# atty is Unmaintained
A Pull Request with a fix has been provided over a year ago but the maintainer seems to be unreachable.
Last release of `atty` was almost 3 years ago.
## Possible Alternative(s)
The below list has not been vetted in any way and may or may not contain alternatives;
- [std::io::IsTerminal](https://doc.rust-lang.org/stable/std/io/trait.IsTerminal.html) - Stable since Rust 1.70.0
- [is-terminal](https://crates.io/crates/is-terminal) - Standalone crate supporting Rust older than 1.70.0
See [advisory page](https://rustsec.org/advisories/RUSTSEC-2021-0145.html) for additional details.
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.