CVE-2021-39228: Memory Safety Issue when using patch or merge on state and assign the result back to state
This vulnerability is a memory safety Issue when using patch
or merge
on state
and assign the result back to state
.
References
- github.com/advisories/GHSA-mc22-5q92-8v85
- github.com/tremor-rs/tremor-runtime
- github.com/tremor-rs/tremor-runtime/commit/1a2efcdbe68e5e7fd0a05836ac32d2cde78a0b2e
- github.com/tremor-rs/tremor-runtime/pull/1217
- github.com/tremor-rs/tremor-runtime/releases/tag/v0.11.6
- github.com/tremor-rs/tremor-runtime/security/advisories/GHSA-mc22-5q92-8v85
- nvd.nist.gov/vuln/detail/CVE-2021-39228
Detect and mitigate CVE-2021-39228 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →