Affected versions of this crate violated alignment when casting byte slices to integer slices, resulting in undefined behavior.
The flaw was corrected by Ralf Jung and Diggory Hardy.
{ "license": "CC0-1.0" }
{ "affected_functions": null, "affects": { "functions": [ "rand_core::BlockRng::fill_bytes", "rand_core::BlockRng::next_u64" ], "arch": [], "os": [] } }
"https://github.com/rustsec/advisory-db/blob/osv/crates/RUSTSEC-2019-0035.json"
"unsound"
[]
"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"