<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T17:55:07.396483+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2020-36323</id>
    <title>Withdrawn: BELL-CVE-2020-36323 — CVE-2020-36323 does not affect BellSoft software</title>
    <updated>2026-10-03T17:55:07.568793+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2020-36323"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-tk31372</id>
    <title>CLEANSTART-2026-TK31372 — Security fix for CVE-2020-36323 applied in: rust 1.51.0-r2</title>
    <updated>2026-10-03T17:55:07.568859+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: rust</p>
<p>Security vulnerability affects the rust package. This issue is resolved in later releases. See references for vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-tk31372"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-33045</id>
    <title>cnvd-2021-33045</title>
    <updated>2026-10-03T17:55:07.568922+00:00</updated>
    <content>cnvd-2021-33045</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-33045"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-48140</id>
    <title>EUVD-2026-48140</title>
    <updated>2026-10-03T17:55:07.568952+00:00</updated>
    <content>EUVD-2026-48140</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-48140"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-36323</id>
    <title>fkie_cve-2020-36323</title>
    <updated>2026-10-03T17:55:07.568977+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In the standard library in Rust before 1.52.0, there is an optimization for joining strings that can cause uninitialized bytes to be exposed (or the program to crash) if the borrowed string changes after its length is checked.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-36323"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9v8g-q8xx-7374</id>
    <title>GHSA-9v8g-q8xx-7374</title>
    <updated>2026-10-03T17:55:07.569019+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In the standard library in Rust before 1.50.3, there is an optimization for joining strings that can cause uninitialized bytes to be exposed (or the program to crash) if the borrowed string changes after its length is checked.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9v8g-q8xx-7374"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-36323</id>
    <title>gsd-2020-36323</title>
    <updated>2026-10-03T17:55:07.569051+00:00</updated>
    <content>gsd-2020-36323</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-36323"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2020-36323</id>
    <title>msrc_CVE-2020-36323 — In the standard library in Rust before 1.52.0 there is an optimization for joining strings that can cause uninitialized…</title>
    <updated>2026-10-03T17:55:07.569074+00:00</updated>
    <content>msrc_CVE-2020-36323</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2020-36323"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1214</id>
    <title>OESA-2021-1214 — rust security update</title>
    <updated>2026-10-03T17:55:07.569110+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: rust</p>
<p>Rust is a systems programming language that runs blazingly fast, prevents segfaults, and guarantees thread safety.

Security Fix(es):

In the standard library in Rust before 1.49.0, String::retain() function has a panic safety problem. It allows creation of a non-UTF-8 Rust string when the provided closure panics. This bug could result in a memory safety violation when other string APIs assume that UTF-8 encoding is used on the same string.(CVE-2020-36317)

In the standard library in Rust before 1.50.0, read_to_end() does not validate the return value from Read in an unsafe context. This bug could lead to a buffer overflow.(CVE-2021-28875)

In the standard library in Rust before 1.52.0, the Zip implementation calls __iterator_get_unchecked() more than once for the same index (under certain conditions) when next_back() and next() are used together. This bug could lead to a memory safety violation due to an unmet safety requirement for the TrustedRandomAccess trait.(CVE-2021-28878)

In the standard library in Rust before 1.51.0, the Zip implementation calls __iterator_get_unchecked() for the same index more than once when nested. This bug can lead to a memory safety violation due to an unmet safety requirement for the TrustedRandomAccess trait.(CVE-2021-28877)

In the standard library in Rust before 1.52.0, the Zip implementation has a panic safety issue. It calls __iterator_get_unchecked() more than once for the same index when the underlying iterator panics (in c…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1214"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3042</id>
    <title>RHSA-2021:3042 — Red Hat Security Advisory: rust-toolset-1.52 and rust-toolset-1.52-rust security and enhancement update</title>
    <updated>2026-10-03T17:55:07.569233+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>rust: optimization for joining strings can cause uninitialized bytes to be exposed rust: heap-based buffer overflow in read_to_end() because it does not validate the return value from Read in an unsafe context rust: panic safety issue in Zip implementation rust: memory safety violation in Zip implementation for nested iter::Zips rust: memory safety violation in Zip implementation when next_back() and next() are used together rust: integer overflow in the Zip implementation can lead to a buffer overflow rust: double free in Vec::from_iter function if freeing the element panics</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3042"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3063</id>
    <title>RHSA-2021:3063 — Red Hat Security Advisory: rust-toolset:rhel8 security, bug fix, and enhancement update</title>
    <updated>2026-10-03T17:55:07.569297+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>rust: optimization for joining strings can cause uninitialized bytes to be exposed rust: heap-based buffer overflow in read_to_end() because it does not validate the return value from Read in an unsafe context rust: panic safety issue in Zip implementation rust: memory safety violation in Zip implementation for nested iter::Zips rust: memory safety violation in Zip implementation when next_back() and next() are used together rust: integer overflow in the Zip implementation can lead to a buffer overflow rust: double free in Vec::from_iter function if freeing the element panics</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3063"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-36323</id>
    <title>UBUNTU-CVE-2020-36323</title>
    <updated>2026-10-03T17:55:07.569352+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: rustc, Ubuntu:Pro:16.04:LTS: rustc, Ubuntu:20.04:LTS: rustc, Ubuntu:22.04:LTS: rustc</p>
<p>In the standard library in Rust before 1.52.0, there is an optimization for joining strings that can cause uninitialized bytes to be exposed (or the program to crash) if the borrowed string changes after its length is checked.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-36323"/>
  </entry>
</feed>
