CVE-2021-45710
Summary
| CVE | CVE-2021-45710 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-27 00:15:00 UTC |
| Updated | 2022-11-01 16:06:00 UTC |
| Description | An issue was discovered in the tokio crate before 1.8.4, and 1.9.x through 1.13.x before 1.13.1, for Rust. In certain circumstances involving a closed oneshot channel, there is a data race and memory corruption. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| raw.githubusercontent.com/rustsec/advisory-db/main/crates/tokio/RUSTSEC-2021-0124.md |
MISC |
raw.githubusercontent.com |
|
| RUSTSEC-2021-0124: tokio: Data race when sending and receiving after closing a `oneshot` channel › RustSec Advisory Database |
MISC |
rustsec.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 182359 Debian Security Update for rust-tokio (CVE-2021-45710)
- 752851 SUSE Enterprise Linux Security Update for 389-ds (SUSE-SU-2022:3996-1)
- 752855 SUSE Enterprise Linux Security Update for rustup (SUSE-SU-2022:3949-1)
- 752881 SUSE Enterprise Linux Security Update for 389-ds (SUSE-SU-2022:4124-1)
- 752934 SUSE Enterprise Linux Security Update for sccache (SUSE-SU-2022:4073-1)