[Pkg-rust-maintainers] Bug#995562: librust-nix-dev: Out-of-bounds write in nix::unistd::getgrouplist

Alexander Kjäll alexander.kjall at gmail.com
Sat Oct 2 10:33:53 BST 2021


Package: librust-nix-dev
Version: 0.19.0-1
Severity: normal
Tags: security

Dear Maintainer,

This package is affected by this security vulnerability that isn't tracked by debian yet:

https://rustsec.org/advisories/RUSTSEC-2021-0119.html


-- System Information:
Debian Release: bookworm/sid
  APT prefers testing
  APT policy: (990, 'testing'), (500, 'unstable')
Architecture: amd64 (x86_64)

Kernel: Linux 5.10.0-1-amd64 (SMP w/4 CPU threads)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), LANGUAGE=en_US:en
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages librust-nix-dev depends on:
pn  librust-bitflags-1+default-dev                        <none>
pn  librust-cc-1+default-dev                              <none>
pn  librust-cfg-if-0.1+default-dev                        <none>
pn  librust-libc-0.2+default-dev                          <none>
ii  librust-libc-dev [librust-libc-0.2+extra-traits-dev]  0.2.80-1

librust-nix-dev recommends no packages.

librust-nix-dev suggests no packages.



More information about the Pkg-rust-maintainers mailing list