Vulnerabilities (CVE)

Filtered by vendor Servo Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25900 1 Servo 1 Smallvec 2021-02-02 7.5 HIGH 9.8 CRITICAL
An issue was discovered in the smallvec crate before 0.6.14 and 1.x before 1.6.1 for Rust. There is a heap-based buffer overflow in SmallVec::insert_many.
CVE-2019-15554 1 Servo 1 Smallvec 2020-08-24 7.5 HIGH 9.8 CRITICAL
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity.
CVE-2019-15551 1 Servo 1 Smallvec 2019-09-03 7.5 HIGH 9.8 CRITICAL
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is a double free for certain grow attempts with the current capacity.
CVE-2018-20991 1 Servo 1 Smallvec 2019-08-30 7.5 HIGH 9.8 CRITICAL
An issue was discovered in the smallvec crate before 0.6.3 for Rust. The Iterator implementation mishandles destructors, leading to a double free.