Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

343 advisories

Loading
Deserialization functions pass uninitialized memory to user-provided Read High
GHSA-m325-rxjv-pwph was published for messagepack-rs (Rust) Jun 17, 2022
Use after free in lru crate High
GHSA-qqmc-hwqp-8g2w was published for lru (Rust) Jun 17, 2022
Failure to verify the public key of a `SignedEnvelope` against the `PeerId` in a `PeerRecord` High
GHSA-wc36-xgcc-jwpr was published for libp2p-core (Rust) Jun 17, 2022
Parser creates invalid uninitialized value High
GHSA-f67m-9j94-qv9j was published for hyper (Rust) Jun 16, 2022
Reading on uninitialized buffer may cause UB ( `gfx_auxil::read_spirv()` ) High
GHSA-28p5-7rg4-8v99 was published for gfx-auxil (Rust) Jun 16, 2022
`Read` on uninitialized buffer may cause UB ( `read_entry()` ) High
GHSA-p56p-gq3f-whg8 was published for flumedb (Rust) Jun 16, 2022
enum_map macro can cause UB when `Enum` trait is incorrectly implemented High
GHSA-rxhx-9fj6-6h2m was published for enum-map (Rust) Jun 16, 2022
KamilaBorowska
Unsoundness in `dashmap` references High
GHSA-mpg5-fvwp-42m2 was published for dashmap (Rust) Jun 16, 2022
saethlin
`Read` on uninitialized memory may cause UB (fn preamble_skipcount()) High
GHSA-r67p-m7g9-gxw6 was published for csv-sniffer (Rust) Jun 16, 2022
Non-aligned u32 read in Chacha20 encryption and decryption High
GHSA-pmcv-mgcf-rvxg was published for crypto2 (Rust) Jun 16, 2022
Channel creates zero value of any type High
GHSA-9g55-pg62-m8hh was published for crossbeam-channel (Rust) Jun 16, 2022
columnar: `Read` on uninitialized buffer may cause UB (ColumnarReadExt::read_typed_vec()) High
GHSA-cxcc-q839-2cw9 was published for columnar (Rust) Jun 16, 2022
InputStream::read_exact : `Read` on uninitialized buffer causes UB High
GHSA-hmx9-jm3v-33hv was published for buffoon (Rust) Jun 16, 2022
`Read` on uninitialized buffer can cause UB (impl of `ReadKVExt`) High
GHSA-5phc-849h-vcxg was published for bronzedb-protocol (Rust) Jun 16, 2022
`read` on uninitialized buffer may cause UB (bite::read::BiteReadExpandedExt::read_framed_max) High
GHSA-72r2-rg28-47v9 was published for bite (Rust) Jun 16, 2022
'Read' on uninitialized memory may cause UB High
GHSA-c6px-4grw-hrjr was published for binjs_io (Rust) Jun 16, 2022
Arrow2 allows double free in `safe` code High
GHSA-5j8w-r7g8-5472 was published for arrow2 (Rust) Jun 16, 2022
`FixedSizeBinaryArray` does not perform bound checks on accessing values and offsets High
GHSA-qgrp-8f3v-q85p was published for arrow (Rust) Jun 16, 2022
`DecimalArray` does not perform bound checks on accessing values and offsets High
GHSA-h588-76vg-prgj was published for arrow (Rust) Jun 16, 2022
Reading on uninitialized memory may cause UB ( `util::read_spv()` ) High
GHSA-qj69-c89v-jwq2 was published for ash (Rust) Jun 16, 2022
`BinaryArray` does not perform bound checks on reading values and offsets High
GHSA-r7cj-wmwv-hfw5 was published for arrow (Rust) Jun 16, 2022
`Read` on uninitialized buffer in `fill_buf()` and `read_up_to()` High
GHSA-hv9v-7w3v-rj6f was published for acc_reader (Rust) Jun 16, 2022
abomonation transmutes &T to and from &[u8] without sufficient constraints High
GHSA-hfxp-p695-629x was published for abomonation (Rust) Jun 16, 2022
Duplicate Advisory: Integer Overflow in HeaderMap::reserve() can cause Denial of Service High
CVE-2019-25008 was published for http (Rust) Jun 16, 2022 withdrawn
matveybaykalov
Link Following in Deno High
CVE-2021-41641 was published for deno (Rust) Jun 13, 2022
ProTip! Advisories are also available from the GraphQL API