CVE-2021-28878 - log back

CVE-2021-28878 edited at 12 Apr 2021 09:46:41
Remote
- Local
+ Remote
CVE-2021-28878 edited at 12 Apr 2021 09:24:16
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Incorrect calculation
Description
+ In the standard library in Rust before 1.52.0, the Zip implementation calls __iterator_get_unchecked() more than once for the same index (under certain conditions) when next_back() and next() are used together. This bug could lead to a memory safety violation due to an unmet safety requirement for the TrustedRandomAccess trait.
References
+ https://github.com/rust-lang/rust/issues/82291
+ https://github.com/rust-lang/rust/pull/82292
+ https://github.com/rust-lang/rust/commit/1d5b2dc945124c619ebb3641c096c063ca8ca1e5
Notes
CVE-2021-28878 created at 12 Apr 2021 09:19:04