Critical severity9.8NVD Advisory· Published Dec 31, 2020· Updated Jun 17, 2026
CVE-2020-35881
CVE-2020-35881
Description
An issue was discovered in the traitobject crate through 2020-06-01 for Rust. It has false expectations about fat pointers, possibly causing memory corruption in, for example, Rust 2.x.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
traitobjectcrates.io | <= 0.1.0 | — |
Affected products
10- cpe:2.3:a:traitobject_project:traitobject:*:*:*:*:*:rust:*:*Range: <=0.1.0
- osv-coords9 versionspkg:apk/chainguard/efs-utilspkg:apk/chainguard/efs-utils-for-aws-csi-driverpkg:apk/wolfi/efs-utilspkg:apk/wolfi/efs-utils-for-aws-csi-driverpkg:cargo/traitobjectpkg:rpm/opensuse/aws-efs-utils&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/aws-efs-utils&distro=openSUSE%20Tumbleweedpkg:rpm/suse/aws-efs-utils&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6pkg:rpm/suse/aws-efs-utils&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP7
< 2.2.0-r20+ 8 more
- (no CPE)range: < 2.2.0-r20
- (no CPE)range: < 2.2.0-r20
- (no CPE)range: < 2.2.0-r20
- (no CPE)range: < 2.2.0-r20
- (no CPE)range: <= 0.1.0
- (no CPE)range: < 2.3.3-150600.17.6.1
- (no CPE)range: < 2.2.1-1.1
- (no CPE)range: < 2.3.3-150600.17.6.1
- (no CPE)range: < 2.3.3-150600.17.6.1
Patches
Vulnerability mechanics
References
4- rustsec.org/advisories/RUSTSEC-2020-0027.htmlnvdExploitPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-j79j-cx3h-g27hghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-35881ghsaADVISORY
- github.com/reem/rust-traitobject/issues/7ghsaWEB
News mentions
0No linked articles in our index yet.