Affected versions of this crate don't guard against panics, so that partially uninitialized buffer is dropped when user-provided T::clone() panics in FixedCapacityDequeLike<T, A>::clone(). This causes memory corruption.
T::clone()
FixedCapacityDequeLike<T, A>::clone()
array-tools
{ "affects": { "functions": [], "os": [], "arch": [] } }
{ "informational": null, "categories": [ "memory-corruption" ], "cvss": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" }