Vulnerability in thin-vec (GHSA-xphw-cqx3-667j)

Open
#2,794 4 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
2/5
Estimated time
1-3 hours
Newbie friendliness
45/100
Issue type
Documentation
Clarity
Needs clarification
Activity status
Quiet
Tech stack
rust
Domain
security

Research direction

Start by reading the linked GHSA-xphw-cqx3-667j advisory and examining existing RustSec advisory entries for the expected format. Confirm the thin-vec vulnerability details and add the corresponding advisory information; done when the repository records the issue accurately and its validation checks pass.

Written by the indexing model from the issue text.

Description

thin-vec: Use-After-Free and Double Free in IntoIter::drop When Element Drop Panics

https://github.com/advisories/GHSA-xphw-cqx3-667j

Dominant language
No language data
Stars
1.2k
Forks
544
Avg merge
1d 10h
Merged PRs (30d)
45

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from rustsec/advisory-db

All issues in rustsec/advisory-db

Similar issues

More Security issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.