VDB
Sign up
CRITICAL9.8

GHSA-2v78-j59h-fmpf

Heap overflow or corruption in safe-transmute

Details

Affected versions of this crate switched the length and capacity arguments in the Vec::from_raw_parts() constructor, which could lead to memory corruption or data leakage.

Are you affected?

Enter the version of the package you're using.

Affected packages

crates.io/safe-transmute
Introduced in: 0.4.0Fixed in: 0.10.1

Upgrade safe-transmute to 0.10.1 or newer (ecosystem crates.io).

References