Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-9g55-pg62-m8hh: Channel creates zero value of any type

Affected versions of this crate called mem::zeroed() to create values of a user-supplied type T. This is unsound e.g. if T is a reference type (which must be non-null).

The flaw was corrected by avoiding the use of mem::zeroed(), using MaybeUninit instead.

ghsa
#git

Channel creates zero value of any type

High severity GitHub Reviewed Published Jun 16, 2022 • Updated Jun 16, 2022

ghsa: Latest News

GHSA-287x-9rff-qvcg: Rust Web Push is vulnerable to a DoS attack via a large integer in a Content-Length header