{"id":"GHSA-r7cj-wmwv-hfw5","aliases":["RUSTSEC-2021-0116"],"url":"https://o3.security/vulnerability/GHSA-r7cj-wmwv-hfw5","summary":"`BinaryArray` does not perform bound checks on reading values and offsets","details":"`BinaryArray` performs insufficient validation on creation, which allows out-of-bounds reads in safe code.\n","published":"2022-06-16T23:40:50Z","modified":"2023-11-08T04:22:37.632268Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"crates.io","name":"arrow","fixedVersion":"6.4.0"}],"fix":null,"references":[{"type":"PACKAGE","url":"https://github.com/apache/arrow-rs"},{"type":"WEB","url":"https://github.com/apache/arrow-rs/blob/6.4.0/CHANGELOG.md#640-2021-12-10"},{"type":"WEB","url":"https://rustsec.org/advisories/RUSTSEC-2021-0116.html"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2023-11-08T04:22:37.632268Z"}}