OESA-2021-1323

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2021-1323
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2021-1323.json
JSON Data
https://api.osv.dev/v1/vulns/OESA-2021-1323
Upstream
Published
2021-08-23T11:03:09Z
Modified
2025-09-03T06:17:22.641887Z
Summary
rust security update
Details

Rust is a systems programming language that runs blazingly fast, prevents segfaults, and guarantees thread safety.

Security Fix(es):

library/std/src/net/parser.rs in Rust before 1.53.0 does not properly consider extraneous zero characters at the beginning of an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses, because of unexpected octal interpretation.(CVE-2021-29922)

Database specific
{
    "severity": "Critical"
}
References

Affected packages

openEuler:20.03-LTS-SP1 / rust

Package

Name
rust
Purl
pkg:rpm/openEuler/rust&distro=openEuler-20.03-LTS-SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.51.0-5.oe1

Ecosystem specific

{
    "noarch": [
        "rust-debugger-common-1.51.0-5.oe1.noarch.rpm",
        "rust-lldb-1.51.0-5.oe1.noarch.rpm",
        "rust-src-1.51.0-5.oe1.noarch.rpm",
        "rust-gdb-1.51.0-5.oe1.noarch.rpm"
    ],
    "x86_64": [
        "cargo-1.51.0-5.oe1.x86_64.rpm",
        "clippy-1.51.0-5.oe1.x86_64.rpm",
        "rust-std-static-1.51.0-5.oe1.x86_64.rpm",
        "rustfmt-1.51.0-5.oe1.x86_64.rpm",
        "rust-debugsource-1.51.0-5.oe1.x86_64.rpm",
        "rust-analysis-1.51.0-5.oe1.x86_64.rpm",
        "rust-help-1.51.0-5.oe1.x86_64.rpm",
        "rust-debuginfo-1.51.0-5.oe1.x86_64.rpm",
        "rls-1.51.0-5.oe1.x86_64.rpm",
        "rust-1.51.0-5.oe1.x86_64.rpm"
    ],
    "aarch64": [
        "rust-debuginfo-1.51.0-5.oe1.aarch64.rpm",
        "rust-help-1.51.0-5.oe1.aarch64.rpm",
        "cargo-1.51.0-5.oe1.aarch64.rpm",
        "rust-1.51.0-5.oe1.aarch64.rpm",
        "rust-debugsource-1.51.0-5.oe1.aarch64.rpm",
        "rust-std-static-1.51.0-5.oe1.aarch64.rpm",
        "clippy-1.51.0-5.oe1.aarch64.rpm",
        "rls-1.51.0-5.oe1.aarch64.rpm",
        "rust-analysis-1.51.0-5.oe1.aarch64.rpm",
        "rustfmt-1.51.0-5.oe1.aarch64.rpm"
    ],
    "src": [
        "rust-1.51.0-5.oe1.src.rpm"
    ]
}

Database specific

source
"https://repo.openeuler.org/security/data/osv/OESA-2021-1323.json"

openEuler:20.03-LTS-SP2 / rust

Package

Name
rust
Purl
pkg:rpm/openEuler/rust&distro=openEuler-20.03-LTS-SP2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.51.0-5.oe1

Ecosystem specific

{
    "noarch": [
        "rust-debugger-common-1.51.0-5.oe1.noarch.rpm",
        "rust-lldb-1.51.0-5.oe1.noarch.rpm",
        "rust-src-1.51.0-5.oe1.noarch.rpm",
        "rust-gdb-1.51.0-5.oe1.noarch.rpm"
    ],
    "x86_64": [
        "cargo-1.51.0-5.oe1.x86_64.rpm",
        "clippy-1.51.0-5.oe1.x86_64.rpm",
        "rust-std-static-1.51.0-5.oe1.x86_64.rpm",
        "rustfmt-1.51.0-5.oe1.x86_64.rpm",
        "rust-debugsource-1.51.0-5.oe1.x86_64.rpm",
        "rust-analysis-1.51.0-5.oe1.x86_64.rpm",
        "rust-help-1.51.0-5.oe1.x86_64.rpm",
        "rust-debuginfo-1.51.0-5.oe1.x86_64.rpm",
        "rls-1.51.0-5.oe1.x86_64.rpm",
        "rust-1.51.0-5.oe1.x86_64.rpm"
    ],
    "aarch64": [
        "rust-debuginfo-1.51.0-5.oe1.aarch64.rpm",
        "rust-help-1.51.0-5.oe1.aarch64.rpm",
        "cargo-1.51.0-5.oe1.aarch64.rpm",
        "rust-1.51.0-5.oe1.aarch64.rpm",
        "rust-debugsource-1.51.0-5.oe1.aarch64.rpm",
        "rust-std-static-1.51.0-5.oe1.aarch64.rpm",
        "clippy-1.51.0-5.oe1.aarch64.rpm",
        "rls-1.51.0-5.oe1.aarch64.rpm",
        "rust-analysis-1.51.0-5.oe1.aarch64.rpm",
        "rustfmt-1.51.0-5.oe1.aarch64.rpm"
    ],
    "src": [
        "rust-1.51.0-5.oe1.src.rpm"
    ]
}

Database specific

source
"https://repo.openeuler.org/security/data/osv/OESA-2021-1323.json"