VDB
Sign up
LOW

GHSA-58xc-hpvq-8473

Redox UEFI Safe API can cause heap-buffer-overflow

Details

ffi::nstr() should be marked unsafe, since a pointer to a buffer without a trailing 0 value will cause a heap buffer overflow.

Are you affected?

Enter the version of the package you're using.

Affected packages

crates.io/redox_uefi_std
Introduced in: 0.1.8Fixed in: 0.1.14

Upgrade redox_uefi_std to 0.1.14 or newer (ecosystem crates.io).

References