GHSA-hxjf-h2mh-r6hj
Dashboard / Vulnerabilities / GHSA-hxjf-h2mh-r6hj
GHSA-hxjf-h2mh-r6hj
Summary: Use After Free in libpulse-binding
Details: Affected versions contained a pair of use-after-free issues with the objects returned by the get_format_info and get_context methods of Stream objects. These objects were mistakenly being constructed without setting an important flag to prevent destruction of the underlying C objects they reference upon their own destruction.
References: https://github.com/jnqnfe/pulse-binding-rust/security/advisories/GHSA-ghpq-vjxw-ch5w, https://nvd.nist.gov/vuln/detail/CVE-2018-25027, https://github.com/jnqnfe/pulse-binding-rust, https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/libpulse-binding/RUSTSEC-2018-0021.md, https://rustsec.org/advisories/RUSTSEC-2018-0021.html
Affected packages
Package
Name: libpulse-binding
Purl: pkg:cargo/libpulse-binding
Affected ranges
Type: SEMVER
Events:
