CVE-2020-35886

An issue was discovered in the arr crate through 2020-08-25 for Rust. An attacker can smuggle non-Sync/Send types across a thread boundary to cause a data race.
Configurations

Configuration 1 (hide)

cpe:2.3:a:arr_project:arr:*:*:*:*:*:rust:*:*

History

21 Nov 2024, 05:28

Type Values Removed Values Added
References () https://rustsec.org/advisories/RUSTSEC-2020-0034.html - Third Party Advisory () https://rustsec.org/advisories/RUSTSEC-2020-0034.html - Third Party Advisory

Information

Published : 2020-12-31 10:15

Updated : 2024-11-21 05:28


NVD link : CVE-2020-35886

Mitre link : CVE-2020-35886

CVE.ORG link : CVE-2020-35886


JSON object : View

Products Affected

arr_project

  • arr
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')