diff --git a/crates/array-queue/RUSTSEC-0000-0000.toml b/crates/array-queue/RUSTSEC-0000-0000.toml new file mode 100644 index 0000000..acc255b --- /dev/null +++ b/crates/array-queue/RUSTSEC-0000-0000.toml @@ -0,0 +1,17 @@ +[advisory] +id = "RUSTSEC-0000-0000" +package = "array-queue" +date = "2020-09-26" +title = "array_queue pop_back() may cause a use-after-free" +url = "https://github.com/raviqqe/array-queue/issues/2" +description = """ +array_queue implements a circular queue that wraps around an array. However, it +fails to properly index into the array in the `pop_back` function allowing the +reading of previously dropped or uninitialized memory. +""" +keywords = ["memory-corruption", "uninitialized-memory", "use-after-free"] + +[versions] + +patched = [] +unaffected = ["< 0.3.0"]