/
DirectorySecurity AdvisoriesPricing
Sign In
Security Advisories

GHSA-q445-7m23-qrmw

Published

Last updated

https://github.com/advisories/GHSA-q445-7m23-qrmw

Severity

Unknown

Summary

openssl's MemBio::get_buf has undefined behavior with empty buffers

Description

Previously, MemBio::get_buf called slice::from_raw_parts with a null-pointer, which violates the functions invariants, leading to undefined behavior. In debug builds this would produce an assertion failure. This is now fixed.

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs