Rename references fields to related (#492)

This frees up `references` to be used for tracking multiple URLs with
additional information.

See also: RustSec/advisory-db#429
This commit is contained in:
Tony Arcieri
2020-11-23 07:55:17 -08:00
committed by GitHub
parent f5505edb82
commit 84f130870b
4 changed files with 10 additions and 9 deletions

View File

@@ -66,9 +66,9 @@ keywords = ["ssl", "mitm"]
# Request a CVE for your RustSec vulns: https://iwantacve.org/
#aliases = ["CVE-2018-XXXX"]
# References to related vulnerabilities (optional)
# Related vulnerabilities (optional)
# e.g. CVE for a C library wrapped by a -sys crate)
#references = ["CVE-2018-YYYY", "CVE-2018-ZZZZ"]
#related = ["CVE-2018-YYYY", "CVE-2018-ZZZZ"]
# Optional: metadata which narrows the scope of what this advisory affects
[affected]

View File

@@ -2,11 +2,11 @@
[advisory]
id = "RUSTSEC-2016-0002"
package = "hyper"
aliases = ["CVE-2016-10932"]
categories = ["crypto-failure"]
date = "2016-05-09"
aliases = ["CVE-2016-10932"]
related = ["RUSTSEC-2016-0001"]
categories = ["crypto-failure"]
keywords = ["ssl", "mitm"]
references = ["RUSTSEC-2016-0001"]
url = "https://github.com/hyperium/hyper/blob/master/CHANGELOG.md#v094-2016-05-09"
[affected]

View File

@@ -2,10 +2,11 @@
[advisory]
id = "RUSTSEC-2019-0002"
package = "slice-deque"
aliases = ["CVE-2019-15543"]
date = "2019-05-07"
aliases = ["CVE-2019-15543"]
related = ["RUSTSEC-2018-0008"]
keywords = ["memory-corruption", "rce"]
references = ["RUSTSEC-2018-0008"]
url = "https://github.com/gnzlbg/slice_deque/issues/57"
[versions]

View File

@@ -2,9 +2,9 @@
[advisory]
id = "RUSTSEC-2020-0024"
package = "tough"
aliases = ["CVE-2020-15093", "GHSA-5q2r-92f9-4m49"]
date = "2020-07-09"
references = ["CVE-2020-6174"]
aliases = ["CVE-2020-15093", "GHSA-5q2r-92f9-4m49"]
related = ["CVE-2020-6174"]
url = "https://github.com/awslabs/tough/security/advisories/GHSA-5q2r-92f9-4m49"
[versions]