Commit Graph

1151 Commits

Author SHA1 Message Date
github-actions[bot]
0283f676ac Assigned RUSTSEC-2020-0144 to lzw (#761)
Co-authored-by: tarcieri <tarcieri@users.noreply.github.com>
2021-02-10 10:27:15 -08:00
HeroicKatora
fb29bc7093 lzw: Unmaintained (#760) 2021-02-10 10:25:38 -08:00
Dirkjan Ochtman
3421cc3e74 Add link to site (#759) 2021-02-08 07:00:49 -08:00
Sergey "Shnatsel" Davidoff
bf053cb35a Merge pull request #758 from RustSec/assign-ids
Assigned RUSTSEC-2021-0020 to hyper
2021-02-06 00:06:42 +01:00
Shnatsel
4467b1f895 Assigned RUSTSEC-2021-0020 to hyper 2021-02-05 23:03:32 +00:00
Sergey "Shnatsel" Davidoff
9007ee7267 Merge pull request #757 from seanmonstar/hyper-wrong-chunked
Add hyper wrong transfer-encoding advisory
2021-02-06 00:02:59 +01:00
Sean McArthur
c55cf597e8 Add hyper wrong transfer-encoding advisory 2021-02-05 14:57:30 -08:00
ab-cgh
24aaac905f Add advisory URL to RUSTSEC-2021-0019 (#756)
Co-authored-by: ABGH, C <>
2021-02-05 12:01:59 -08:00
Tony Arcieri
79c2677cfa publish-web fix (#755)
Uses the flow suggested here:

https://github.com/actions/checkout#push-a-commit-using-the-built-in-token
2021-02-04 13:12:34 -08:00
Tony Arcieri
67b958f393 Have publish-web GH Action auto-publish changes (#754)
Or at least, attempt to.
2021-02-04 12:19:22 -08:00
Sergey "Shnatsel" Davidoff
9a17f44449 Merge pull request #752 from RustSec/assign-ids
Assigned RUSTSEC-2021-0019 to xcb
2021-02-04 21:05:01 +01:00
Shnatsel
7cc4f4cb71 Assigned RUSTSEC-2021-0019 to xcb 2021-02-04 20:04:16 +00:00
Sergey "Shnatsel" Davidoff
2936159924 Merge pull request #750 from psychon/xcb
Report various rust-xcb issues to RustSec
2021-02-04 21:03:37 +01:00
Sergey "Shnatsel" Davidoff
2253445a08 Update RUSTSEC-0000-0000.md 2021-02-04 20:54:11 +01:00
Uli Schlachter
f2c5747e9f Report various rust-xcb issues to RustSec
Closes: https://github.com/RustSec/advisory-db/issues/653
2021-02-04 19:40:03 +01:00
Sergey "Shnatsel" Davidoff
7af087efc2 Merge pull request #748 from RustSec/assign-ids
Assigned RUSTSEC-2021-0018 to qwutils
2021-02-04 18:21:16 +01:00
Shnatsel
11a7ea188a Assigned RUSTSEC-2021-0018 to qwutils 2021-02-04 17:20:22 +00:00
Sergey "Shnatsel" Davidoff
a257f0a447 Merge pull request #747 from ammaraskar/qwutils
[patched] Add advisory for double-free in qwutils
2021-02-04 18:19:44 +01:00
Ammar Askar
81081c1c77 Add advisory for double-free in qwutils 2021-02-04 09:17:53 -08:00
Sergey "Shnatsel" Davidoff
13a759a835 Merge pull request #745 from RustSec/assign-ids
Assigned RUSTSEC-2020-0143 to multiqueue
2021-02-04 14:37:23 +01:00
Shnatsel
ace29ae4c1 Assigned RUSTSEC-2020-0143 to multiqueue 2021-02-04 13:37:11 +00:00
Sergey "Shnatsel" Davidoff
432a8ed091 Merge pull request #744 from JOE1994/0125-multiqueue
multiqueue: Queues allow non-Send types to be sent to other threads, allowing data races
2021-02-04 14:36:33 +01:00
JOE1994
00001473c7 Report 0125-multiqueue to RustSec 2021-02-03 22:01:53 -05:00
Sergey "Shnatsel" Davidoff
3ede0222d4 Merge pull request #740 from Qwaz/2020-0100-date
RUSTSEC-2020-0100: Update date field
2021-02-03 18:31:25 +01:00
Yechan Bae
f898b07b9a Update date field 2021-02-03 11:45:30 -05:00
Sergey "Shnatsel" Davidoff
34a76a1f84 Merge pull request #738 from tafia/calamine-fix
add patched version for calamine
2021-02-03 15:01:45 +01:00
Johann Tuffe
93e896d0d0 add patched version for calamine 2021-02-03 21:48:31 +08:00
Sergey "Shnatsel" Davidoff
54dba9d6de Merge pull request #736 from RustSec/assign-ids
Assigned RUSTSEC-2020-0142 to syncpool
2021-02-02 18:11:42 +01:00
Shnatsel
f60715bfd3 Assigned RUSTSEC-2020-0142 to syncpool 2021-02-02 17:07:44 +00:00
Sergey "Shnatsel" Davidoff
dff8798e3f Merge pull request #654 from JOE1994/0051-syncpool
syncpool: Send bound needed on T (for Send impl of `Bucket2`)
2021-02-02 18:06:03 +01:00
Sergey "Shnatsel" Davidoff
8c2bbad5cb add patched version 2021-02-02 18:05:12 +01:00
Sergey "Shnatsel" Davidoff
ed0bb5ee16 Merge pull request #734 from RustSec/assign-ids
Assigned RUSTSEC-2020-0141 to noise_search
2021-02-01 14:59:52 +01:00
Shnatsel
ffe5e3d69d Assigned RUSTSEC-2020-0141 to noise_search 2021-02-01 13:58:53 +00:00
Sergey "Shnatsel" Davidoff
e9012b0ead Merge pull request #731 from JOE1994/0060-noise_search
noise_search: `MvccRwLock` allows data races & aliasing violations
2021-02-01 14:58:19 +01:00
Sergey "Shnatsel" Davidoff
a2b63f4b82 Merge pull request #732 from o0Ignition0o/igni/lever_0.1.1
Lever 0.1.1 patch
2021-02-01 14:55:54 +01:00
o0Ignition0o
61042bf517 Lever 0.1.1 patch 2021-02-01 12:57:26 +01:00
Youngsuk Kim
7ef8c3d234 Update advisory for 'noise_search' crate 2021-01-31 23:24:23 -05:00
JOE1994
313915b6c1 Report 0060-noise_search to RustSec 2021-01-31 23:19:36 -05:00
Sergey "Shnatsel" Davidoff
a1ebd36374 Merge pull request #729 from RustSec/assign-ids
Assigned RUSTSEC-2021-0017 to postscript
2021-01-31 15:30:51 +01:00
Shnatsel
1417344471 Assigned RUSTSEC-2021-0017 to postscript 2021-01-31 14:30:08 +00:00
Sergey "Shnatsel" Davidoff
04fe6be48a Merge pull request #728 from JOE1994/0118-postscript
postscript: `Read` on uninitialized buffer may cause UB (`impl Walue for Vec<u8>`)
2021-01-31 15:29:34 +01:00
JOE1994
6f17443c22 Report 0118-postscript to RustSec 2021-01-31 09:28:41 -05:00
Sergey "Shnatsel" Davidoff
ceefe80319 Merge pull request #726 from Qwaz/update-category
Add thread-safety category to relevant bugs
2021-01-31 14:02:27 +01:00
Yechan Bae
a19397dee4 Add thread-safety category to relevant bugs 2021-01-30 23:02:50 -05:00
Sergey "Shnatsel" Davidoff
fc35f7ab11 Merge pull request #724 from RustSec/assign-ids
Assigned RUSTSEC-2021-0016 to ms3d
2021-01-31 01:47:35 +01:00
Shnatsel
cdf5a460d8 Assigned RUSTSEC-2021-0016 to ms3d 2021-01-31 00:46:34 +00:00
Sergey "Shnatsel" Davidoff
1640747e83 Merge pull request #723 from JOE1994/0112-ms3d
ms3d: `IoReader::read()`: user-provided `Read` on uninitialized buffer may cause UB
2021-01-31 01:46:02 +01:00
JOE1994
91edd1b4e5 Report 0112-ms3d to RustSec 2021-01-30 19:40:14 -05:00
Lucas Fernandes Nogueira
18000b07d4 chore(tiny_http): RUSTSEC 2020-0031 patched on 0.8.0 (#721) 2021-01-30 18:50:32 -05:00
Sergey "Shnatsel" Davidoff
faa37a1c37 Merge pull request #719 from RustSec/assign-ids
Assigned RUSTSEC-2020-0140 to model
2021-01-30 19:56:21 +01:00