CVE-2020-36323

In the standard library in Rust before 1.52.0, there is an optimization for joining strings that can cause uninitialized bytes to be exposed (or the program to crash) if the borrowed string changes after its length is checked.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.2 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 78%
Affected Products (NVD)
VendorProductVersion
rust-langrust
𝑥
< 1.52.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
rustc
bookworm
1.63.0+dfsg1-2
fixed
bullseye
no-dsa
buster
no-dsa
sid
1.82.0+dfsg1-2
fixed
stretch
no-dsa
trixie
1.82.0+dfsg1-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
rustc
bionic
not-affected
focal
Fixed 1.53.0+dfsg1+llvm-4ubuntu1~20.04.1
released
groovy
ignored
hirsute
ignored
impish
ignored
jammy
Fixed 1.53.0+dfsg1+llvm-4ubuntu1
released
kinetic
ignored
lunar
not-affected
mantic
not-affected
noble
not-affected
trusty
needed
xenial
needed
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
cargo
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
cargo-doc
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
clippy
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rls
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-analysis
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-debugger-common
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-debuginfo
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-doc
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-gdb
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-src
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rust-std-static
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
rustfmt
Amazon Linux 2
0:1.56.1-1.amzn2.0.1
fixed
Azure Linux logo
Azure Linux Releases
Azure Package
Release
rust
CBL-Mariner 1.0
0:1.47.0-3.cm1
fixed