
Find real vulnerabilities before they ship
An issue was discovered in the tokio crate before 1.8.4, and 1.9.x through 1.13.x before 1.13.1, for Rust. In certain circumstances involving a closed oneshot channel, there is a data race and memory corruption.
Base Score
8.1| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| tokio(crates.io) | 0.1.14 | 1.8.4 | N/A |
| tokio(crates.io) | 1.9.0 | 1.13.1 | N/A |
| Base Score | 8.1 |
|---|---|
| Vector String | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
| Base Severity | High |
| Version | 3.1 |
| Attack Vector (AV) | NETWORK |