Skip to content

hexchat (all versions) is unsound (use-after-free) #933

@SoniEx2

Description

@SoniEx2

The hexchat crate has register_command and deregister_command functions. When used together, they can cause an use-after-free. This seems to be the case with most if not all of the callback-related functions.

Additionally, the crate seems to be no longer maintained.

Metadata

Metadata

Assignees

No one assigned

    Labels

    UnsoundInformational / Unsound

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions