Vulnerabilities > CVE-2021-28031 - Double Free vulnerability in Scratchpad Project Scratchpad

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
scratchpad-project
CWE-415
critical

Summary

An issue was discovered in the scratchpad crate before 1.3.1 for Rust. The move_elements function can have a double-free upon a panic in a user-provided f function.

Common Weakness Enumeration (CWE)