maxminddb's `Reader::open_mmap` unsoundly marks unsafe memmap operation as safe
Low severity
GitHub Reviewed
Published
Dec 2, 2025
to the GitHub Advisory Database
•
Updated Dec 2, 2025
Description
Published to the GitHub Advisory Database
Dec 2, 2025
Reviewed
Dec 2, 2025
Last updated
Dec 2, 2025
maxminddb prior to version 0.27 declared
Reader::open_mmapas safe despite wrapping an inherently unsafe memmap2 operation with no extra step done to guarantee safety. This could have led to undefined behaviour if the file were to be modified on disk while the memory map was still active.References