VDB
Sign up
CRITICAL9.8

GHSA-cv7x-6rc6-pq5v

Double free in containers

Details

Upon panic in a user-provided function f, fn mutate() & fn mutate2 drops twice a same object.

Affected versions of this crate did not guard against double drop while temporarily duplicating an object's ownership with ptr::read().

Dropping a same object can result in memory corruption.

The flaw was corrected in version "0.9.11" by fixing the code to abort upon panic.

Are you affected?

Enter the version of the package you're using.

Affected packages

crates.io/containers
Introduced in: 0Fixed in: 0.9.11

Upgrade containers to 0.9.11 or newer (ecosystem crates.io).

References