CVE-2020-36434: Sys-Info Project Sys-Info
Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.
An issue was discovered in the sys-info crate before 0.8.0 for Rust. sys_info::disk_info calls can trigger a double free.
Affected products
- Sys-Info Project Sys-Info: before 0.8.0 (fixed in 0.8.0)
Published 2021-08-08. Last modified 2026-06-17.