An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2020-0048.html | Exploit Patch Third Party Advisory |
Configurations
History
No history.
Information
Published : 2020-12-31 09:15
Updated : 2021-01-07 16:48
NVD link : CVE-2020-35901
Mitre link : CVE-2020-35901
CVE.ORG link : CVE-2020-35901
JSON object : View
Products Affected
actix
- actix-http
CWE
CWE-416
Use After Free