VYPR
Medium severity6.5NVD Advisory· Published May 13, 2025· Updated Apr 15, 2026

CVE-2025-4574

CVE-2025-4574

Description

In crossbeam-channel rust crate, the internal Channel type's Drop method has a race condition which could, in some circumstances, lead to a double-free that could result in memory corruption.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
crossbeam-channelcrates.io
>= 0.5.12, < 0.5.150.5.15

Patches

1

Vulnerability mechanics

Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

6

News mentions

0

No linked articles in our index yet.