crates.io package
rusqlite
pkg:cargo/rusqlite
Vulnerabilities (15)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-45719 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. update_hook has a use-after-free. | |
| CVE-2021-45718 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. rollback_hook has a use-after-free. | |
| CVE-2021-45717 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. commit_hook has a use-after-free. | |
| CVE-2021-45716 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_collation has a use-after-free. | |
| CVE-2021-45715 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_window_function has a use-after-free. | |
| CVE-2021-45714 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_aggregate_function has a use-after-free. | |
| CVE-2021-45713 | Hig | 7.5 | >= 0.25.0, < 0.25.4 | 0.25.4 | Dec 26, 2021 | An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_scalar_function has a use-after-free. | |
| CVE-2020-35873 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated because sessions.rs has a use-after-free. | |
| CVE-2020-35872 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via the repr(Rust) type. | |
| CVE-2020-35871 | Hig | 8.1 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API data race. | |
| CVE-2020-35870 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API use-after-free. | |
| CVE-2020-35869 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated because rusqlite::trace::log mishandles format strings. | |
| CVE-2020-35868 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via UnlockNotification. | |
| CVE-2020-35867 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via create_module. | |
| CVE-2020-35866 | Cri | 9.8 | < 0.23.0 | 0.23.0 | Dec 31, 2020 | An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via VTab / VTabCursor. |
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. update_hook has a use-after-free.
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. rollback_hook has a use-after-free.
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. commit_hook has a use-after-free.
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_collation has a use-after-free.
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_window_function has a use-after-free.
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_aggregate_function has a use-after-free.
- affected >= 0.25.0, < 0.25.4fixed 0.25.4
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_scalar_function has a use-after-free.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated because sessions.rs has a use-after-free.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via the repr(Rust) type.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API data race.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API use-after-free.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated because rusqlite::trace::log mishandles format strings.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via UnlockNotification.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via create_module.
- affected < 0.23.0fixed 0.23.0
An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via VTab / VTabCursor.