{"id":"GHSA-g4rw-8m5q-6453","summary":"Out of bounds access in rgb","details":"Affected versions of rgb crate allow viewing and modifying data of any type T wrapped in RGB\u003cT\u003e as bytes, and do not correctly constrain RGB\u003cT\u003e and other wrapper structures to the types for which it is safe to do so.\n\nSafety violation possible for a type wrapped in RGB\u003cT\u003e and similar wrapper structures:\n\n* If T contains padding, viewing it as bytes may lead to exposure of contents of uninitialized memory.\n* If T contains a pointer, modifying it as bytes may lead to dereferencing of arbitrary pointers.\n* Any safety and/or validity invariants for T may be violated.\n\nThe issue was resolved by requiring all types wrapped in structures provided by RGB crate to implement an unsafe marker trait.","aliases":["CVE-2020-25016","RUSTSEC-2020-0029"],"modified":"2023-11-01T04:52:37.394860Z","published":"2021-08-25T20:45:12Z","database_specific":{"nvd_published_at":null,"cwe_ids":["CWE-119","CWE-843"],"severity":"CRITICAL","github_reviewed":true,"github_reviewed_at":"2021-08-19T21:21:37Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2020-25016"},{"type":"WEB","url":"https://github.com/kornelski/rust-rgb/issues/35"},{"type":"PACKAGE","url":"https://github.com/kornelski/rust-rgb"},{"type":"WEB","url":"https://rustsec.org/advisories/RUSTSEC-2020-0029.html"}],"affected":[{"package":{"name":"rgb","ecosystem":"crates.io","purl":"pkg:cargo/rgb"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0.5.4"},{"fixed":"0.8.20"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/08/GHSA-g4rw-8m5q-6453/GHSA-g4rw-8m5q-6453.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"}]}