Update aliases from GHSA OSV export (#1693)

This commit is contained in:
Alexis Mousset
2023-06-13 15:10:24 +02:00
committed by GitHub
parent ea9ad160b6
commit 84c633df9c
383 changed files with 388 additions and 304 deletions

View File

@@ -3,7 +3,7 @@
id = "RUSTSEC-2016-0002"
package = "hyper"
date = "2016-05-09"
aliases = ["CVE-2016-10932"]
aliases = ["CVE-2016-10932", "GHSA-9xjr-m6f3-v5wm"]
cvss = "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N"
related = ["RUSTSEC-2016-0001"]
categories = ["crypto-failure"]

View File

@@ -2,7 +2,7 @@
[advisory]
id = "RUSTSEC-2017-0002"
package = "hyper"
aliases = ["CVE-2017-18587"]
aliases = ["CVE-2017-18587", "GHSA-q89x-f52w-6hj2"]
cvss = "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
date = "2017-01-23"
url = "https://github.com/hyperium/hyper/wiki/Security-001"

View File

@@ -2,7 +2,7 @@
[advisory]
id = "RUSTSEC-2020-0008"
package = "hyper"
aliases = ["CVE-2020-35863"]
aliases = ["CVE-2020-35863", "GHSA-h3qr-rq2j-74w4"]
cvss = "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
categories = ["format-injection"]
date = "2020-03-19"

View File

@@ -5,6 +5,7 @@ package = "hyper"
date = "2022-05-10"
informational = "unsound"
url = "https://github.com/hyperium/hyper/pull/2545"
aliases = ["GHSA-f67m-9j94-qv9j"]
[versions]
patched = [">= 0.14.12"]