Critical severity9.8NVD Advisory· Published Dec 27, 2021· Updated Jun 17, 2026
CVE-2021-45706
CVE-2021-45706
Description
An issue was discovered in the zeroize_derive crate before 1.1.1 for Rust. Dropped memory is not zeroed out for an enum.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
zeroize_derivecrates.io | < 1.1.1 | 1.1.1 |
Affected products
3- cpe:2.3:a:zeroize_derive_project:zeroize_derive:*:*:*:*:*:rust:*:*Range: <1.1.1
- rust/zeroize_derivedescription
Patches
Vulnerability mechanics
References
6- github.com/advisories/GHSA-c5hx-w945-j4pqghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-45706ghsaADVISORY
- raw.githubusercontent.com/rustsec/advisory-db/main/crates/zeroize_derive/RUSTSEC-2021-0115.mdnvdThird Party AdvisoryWEB
- rustsec.org/advisories/RUSTSEC-2021-0115.htmlnvdThird Party AdvisoryWEB
- github.com/RustCrypto/utils/tree/master/zeroize/deriveghsaPACKAGE
- github.com/iqlusioninc/crates/issues/876ghsaWEB
News mentions
0No linked articles in our index yet.