Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32409
HistoryOct 07, 2021 - 10:13 a.m.

Arbitrary Code Execution

2021-10-0710:13:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
34
crossbeam-deque
remote code execution
race condition
sensitive information
software

EPSS

0.009

Percentile

82.7%

crossbeam-deque is vulnerable to remote code execution. The vulnerability exists due to a race condition in the “Stealer::steal”, “Stealer::steal_batch” and “Stealer::steal_batch_and_pop” functions. A remote attacker can exploit the race and gain unauthorized access to sensitive information.

References