GHSA-cqpr-pcm7-m3jc

Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/06/GHSA-cqpr-pcm7-m3jc/GHSA-cqpr-pcm7-m3jc.json
Published
2022-06-16T23:48:34Z
Modified
2022-06-22T19:45:15Z
Details

Impact

Unix-like operating systems may segfault due to dereferencing a dangling pointer in specific circumstances. This requires an environment variable to be set in a different thread than the affected functions. This may occur without the user's knowledge, notably in a third-party library.

Workarounds

No workarounds are known.

References

Affected packages

crates.io / chrono

chrono

Affected ranges

Type
SEMVER
Events
Introduced
0

Affected versions

Database specific

{
    "last_known_affected_version_range": "<= 0.4.19"
}