CVE-2019-16881

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
25/09/2019
Last modified:
26/09/2019

Description

An issue was discovered in the portaudio-rs crate through 0.3.1 for Rust. There is a use-after-free with resultant arbitrary code execution because of a lack of unwind safety in stream_callback and stream_finished_callback.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:portaudio-rs_project:portaudio-rs:*:*:*:*:*:*:*:* 0.3.1 (including)


References to Advisories, Solutions, and Tools