-
-
Notifications
You must be signed in to change notification settings - Fork 12
Open
Labels
cause::direct dependencyThis issue is caused/concerns a direct dependency of GitArenaThis issue is caused/concerns a direct dependency of GitArenastatus::on holdtype::security
Description
Potential segfault in
localtime_rinvocations
| Details | |
|---|---|
| Package | chrono |
| Version | 0.4.19 |
| URL | chronotope/chrono#499 |
| Date | 2020-11-10 |
Impact
Unix-like operating systems may segfault due to dereferencing a dangling pointer in specific circumstances. This requires an environment variable to be set in a different thread than the affected functions. This may occur without the user's knowledge, notably in a third-party library.
Workarounds
No workarounds are known.
References
See advisory page for additional details.
Metadata
Metadata
Assignees
Labels
cause::direct dependencyThis issue is caused/concerns a direct dependency of GitArenaThis issue is caused/concerns a direct dependency of GitArenastatus::on holdtype::security