VDB
Sign up
HIGH7.5

GHSA-rh89-x75f-rh3c

Exposure of uninitialized memory in memoffset

Details

Affected versions of this crate caused traps and/or memory unsafety by zero-initializing references. They also could lead to uninitialized memory being dropped if the field for which the offset is requested was behind a deref coercion, and that deref coercion caused a panic. The flaw was corrected by using MaybeUninit.

Are you affected?

Enter the version of the package you're using.

Affected packages

crates.io/memoffset
Introduced in: 0Fixed in: 0.5.0

Upgrade memoffset to 0.5.0 or newer (ecosystem crates.io).

References