VDB

CVE-2018-1000657

CVE-2018-1000657 REJECTED

Rust Programming Language Rust standard library version Commit bfa0e1f58acf1c28d500c34ed258f09ae021893e and later; stable release 1.3.0 and later contains a Buffer Overflow vulnerability in std::collections::vec_deque::VecDeque::reserve() function that can result in Arbitrary code execution, but no proof-of-concept exploit is currently published.. This vulnerability appears to have been fixed in after commit fdfafb510b1a38f727e920dccbeeb638d39a8e60; stable release 1.22.0 and later.

EPSS 0.15% · 35.6th percentile

Risk Scores

EPSS Score
0.15%
35.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSrustc0, 1.15.1+dfsg0-1~exp1ubuntu2~14.04.7, 1.21.0+dfsg1+llvm-0ubuntu3~14.04.5
Ubuntu:18.04:LTSrustc0, 1.18.0+dfsg1-4ubuntu1, *
Ubuntu:16.04:LTSrustc1.22.1+dfsg1+llvm-0ubuntu2~16.04.2, 1.24.1+dfsg1+llvm-0ubuntu1~16.04.1, *

Timeline

  • Aug 20, 2018 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›