Loading vulnerability details...
RUSTSEC-2024-0377 contains multiple soundness issues:
BytesIter trait has safety invariants but is public and not marked unsafewrite_float() calls MaybeUninit::assume_init() on uninitialized data, which is is not allowed by the Rust abstract machineradix() calls MaybeUninit::assume_init() on uninitialized data, which is is not allowed by the Rust abstract machineVersion 1.0 fixes these issues, removes the vast majority of unsafe code, and also fixes some correctness issues.
RUSTSEC-2024-0377 contains multiple soundness issues:
BytesIter trait has safety invariants but is public and not marked unsafewrite_float() calls MaybeUninit::assume_init() on uninitialized data, which is is not allowed by the Rust abstract machineradix() calls MaybeUninit::assume_init() on uninitialized data, which is is not allowed by the Rust abstract machineVersion 1.0 fixes these issues, removes the vast majority of unsafe code, and also fixes some correctness issues.
This medium-severity vulnerability could be exploited under certain conditions to compromise security controls or access sensitive information. Should be addressed in a timely manner.
Apply security patches to version 1.0.0 immediately
Isolate affected systems from untrusted networks until patching is complete
Implement enhanced monitoring for exploitation attempts and unusual behavior