{"id":"RUSTSEC-2021-0004","summary":"Missing Send bound for Lazy","details":"All current versions of this crate allow causing data races in safe code.\n\nThe flaw will be fixed in the next release.","aliases":["CVE-2021-25901","GHSA-w47j-hqpf-qw9w"],"modified":"2023-11-08T04:05:16.553479Z","published":"2021-01-17T12:00:00Z","database_specific":{"license":"CC0-1.0"},"references":[{"type":"PACKAGE","url":"https://crates.io/crates/lazy-init"},{"type":"ADVISORY","url":"https://rustsec.org/advisories/RUSTSEC-2021-0004.html"},{"type":"REPORT","url":"https://github.com/khuey/lazy-init/issues/9"}],"affected":[{"package":{"name":"lazy-init","ecosystem":"crates.io","purl":"pkg:cargo/lazy-init"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0.0.0-0"},{"fixed":"0.4.1-0"}]}],"ecosystem_specific":{"affected_functions":null,"affects":{"arch":[],"functions":[],"os":[]}},"database_specific":{"informational":null,"source":"https://github.com/rustsec/advisory-db/blob/osv/crates/RUSTSEC-2021-0004.json","categories":["memory-corruption"],"cvss":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"}]}