First published: Thu Dec 31 2020(Updated: )
An issue was discovered in the flatbuffers crate through 2020-04-11 for Rust. read_scalar (and read_scalar_at) can transmute values without unsafe blocks.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google FlatBuffers | >=0.4.0<=1.12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-35864 is classified as a moderate severity vulnerability.
To fix CVE-2020-35864, update the flatbuffers crate to version 1.12.0 or later.
CVE-2020-35864 affects versions of the flatbuffers crate for Rust from 0.4.0 to 1.12.0.
CVE-2020-35864 is an issue related to unsafe memory operations in the flatbuffers crate.
Any applications using affected versions of the flatbuffers crate for Rust may be impacted by CVE-2020-35864.