CRITICAL9.8
GHSA-cv7x-6rc6-pq5v
Double free in containers
Details
Upon panic in a user-provided function f, fn mutate() & fn mutate2 drops twice a same object.
Affected versions of this crate did not guard against double drop while temporarily duplicating an object's ownership with ptr::read().
Dropping a same object can result in memory corruption.
The flaw was corrected in version "0.9.11" by fixing the code to abort upon panic.
Are you affected?
Enter the version of the package you're using.
Affected packages
crates.io/containers
Introduced in:
0Fixed in: 0.9.11Upgrade containers to 0.9.11 or newer (ecosystem crates.io).