High severity7.5NVD Advisory· Published Dec 26, 2021· Updated Jun 17, 2026
CVE-2021-45717
CVE-2021-45717
Description
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. commit_hook has a use-after-free.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
rusqlitecrates.io | >= 0.25.0, < 0.25.4 | 0.25.4 |
rusqlitecrates.io | >= 0.26.0, < 0.26.2 | 0.26.2 |
Affected products
3- cpe:2.3:a:rusqlite_project:rusqlite:*:*:*:*:*:rust:*:*Range: >=0.25.0,<0.25.4
- rusqlite/rusqlitedescription
Patches
Vulnerability mechanics
References
5- raw.githubusercontent.com/rustsec/advisory-db/main/crates/rusqlite/RUSTSEC-2021-0128.mdnvdExploitThird Party AdvisoryWEB
- rustsec.org/advisories/RUSTSEC-2021-0128.htmlnvdExploitIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-4qr3-m7ww-hh9gghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-45717ghsaADVISORY
- github.com/rusqlite/rusqlite/issues/1048ghsaWEB
News mentions
0No linked articles in our index yet.