Executive brief
Use-after-free with objects returned by `Stream`'s `get_format_info` and `get_context` methods
Affected products
- crates.io libpulse-binding
CVE identifiers
- CVE-2018-25027
- CVE-2018-25028
Junglewise Threat Intelligence
CVE-2018-25027 · Severity: low · CVSS 3.1 · Published 2018-06-15
Technologies: libpulse-binding (crates.io). Vendors: crates.io.
Use-after-free with objects returned by `Stream`'s `get_format_info` and `get_context` methods