diff --git a/crates/array-tools/RUSTSEC-0000-0000.md b/crates/array-tools/RUSTSEC-0000-0000.md new file mode 100644 index 0000000..71cd9ff --- /dev/null +++ b/crates/array-tools/RUSTSEC-0000-0000.md @@ -0,0 +1,15 @@ +```toml +[advisory] +id = "RUSTSEC-0000-0000" +package = "array-tools" +date = "2020-12-31" +url = "https://github.com/L117/array-tools/issues/2" +categories = ["memory-corruption"] + +[versions] +patched = [] +``` + +# `FixedCapacityDequeLike::clone()` can cause dropping uninitialized memory + +Affected versions of this crate don't guard against panics, so that partially uninitialized buffer is dropped when user-provided `T::clone()` panics in `FixedCapacityDequeLike::clone()`. This causes memory corruption.