GHSA-r45x-ghr2-qjxc

Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/06/GHSA-r45x-ghr2-qjxc/GHSA-r45x-ghr2-qjxc.json
Published
2022-06-17T00:30:52Z
Modified
2022-06-23T17:29:03Z
Details

Duplicate Advisory

This advisory is a duplicate of GHSA-c5hx-w945-j4pq. This link is preserved to maintain external references.

Original Description

Affected versions of this crate did not implement Drop when #[zeroize(drop)] was used on an enum.

This can result in memory not being zeroed out after dropping it, which is exactly what is intended when adding this attribute.

The flaw was corrected in version 1.2 and #[zeroize(drop)] on enums now properly implements Drop.

References

Affected packages

crates.io / zeroize_derive

zeroize_derive

Affected ranges

Type
SEMVER
Events
Introduced
0
Fixed
1.1.1

Affected versions