Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-xphw-cqx3-667j | thin-vec: Use-After-Free and Double Free in IntoIter::drop When Element Drop Panics |
Tue, 12 May 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:mozilla:thin-vec:0.2.15:*:*:*:*:rust:*:* |
Wed, 22 Apr 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1341 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 20 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mozilla
Mozilla thin-vec |
|
| Vendors & Products |
Mozilla
Mozilla thin-vec |
Mon, 20 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-415 | |
| Metrics |
cvssV3_1
|
Mon, 20 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-416 |
Mon, 20 Apr 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skips setting the length to zero. | |
| Title | Use-After-Free and Double-Free in IntoIter::drop when element drop panics | |
| References |
|
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2026-04-20T13:14:37.846Z
Reserved: 2026-04-20T07:02:28.158Z
Link: CVE-2026-6654
Updated: 2026-04-20T13:14:31.022Z
Status : Analyzed
Published: 2026-04-20T11:16:19.937
Modified: 2026-05-12T15:19:28.900
Link: CVE-2026-6654
OpenCVE Enrichment
Updated: 2026-04-22T07:30:11Z
Github GHSA