Commit Graph

1019 Commits

Author SHA1 Message Date
Sergey "Shnatsel" Davidoff
261241340c Merge pull request #672 from JOE1994/0032-conqueue
conqueue: QueueSender's Send trait and Sync trait should have bounds
2021-01-24 23:01:38 +01:00
JOE1994
92a9ea5f21 Report 0032-conqueue to RustSec 2021-01-24 16:13:12 -05:00
Sergey "Shnatsel" Davidoff
f32aab0bba Merge pull request #669 from RustSec/assign-ids
Assigned RUSTSEC-2021-0013 to raw-cpuid
2021-01-24 21:27:26 +01:00
Shnatsel
dd9f177956 Assigned RUSTSEC-2021-0013 to raw-cpuid 2021-01-24 20:26:39 +00:00
Sergey "Shnatsel" Davidoff
b33006702b Merge pull request #614 from niklasf/raw-cpuid
raw-cpuid: Multiple soundness issues
2021-01-24 21:26:11 +01:00
Niklas Fiekas
2e01144dc4 prepare first part of raw-cpuid advisory, add solutions 2021-01-24 21:24:39 +01:00
Sergey "Shnatsel" Davidoff
aba18b27ed Merge pull request #667 from mitsuhiko/feature/add-similar
Add similar suggestion to difference.rs
2021-01-24 20:53:50 +01:00
Armin Ronacher
c0b7f03250 Add similar suggestion to difference.rs 2021-01-24 20:50:18 +01:00
Sergey "Shnatsel" Davidoff
71114d262e Merge pull request #657 from RustSec/assign-ids
Assigned RUSTSEC-2020-0116 to unicycle, RUSTSEC-2021-0012 to cdr
2021-01-24 17:03:46 +01:00
Shnatsel
5b0a58befb Assigned RUSTSEC-2020-0116 to unicycle, RUSTSEC-2021-0012 to cdr 2021-01-24 16:03:19 +00:00
Sergey "Shnatsel" Davidoff
4ef3fb33fb Merge pull request #655 from JOE1994/0041-unicycle
unicycle: PinSlab<T> and Unordered<T, S> need bounds on their Send/Sync traits
2021-01-24 17:02:47 +01:00
Sergey "Shnatsel" Davidoff
2b91d6dd5c Merge pull request #656 from JOE1994/0085-cdr
cdr: Reading uninitialized memory can cause UB (`Deserializer::read_vec`)
2021-01-24 17:02:17 +01:00
JOE1994
d5dac477ee Report 0085-cdr to RustSec 2021-01-24 07:31:17 -05:00
JOE1994
d0b9cd8051 Report 0041-unicycle to RustSec 2021-01-24 07:20:09 -05:00
Sergey "Shnatsel" Davidoff
0a8f5ce4b9 Merge pull request #647 from RustSec/assign-ids
Assigned RUSTSEC-2020-0115 to ruspiro-singleton
2021-01-22 20:28:19 +01:00
Shnatsel
fca5ca1d2b Assigned RUSTSEC-2020-0115 to ruspiro-singleton 2021-01-22 19:27:29 +00:00
Sergey "Shnatsel" Davidoff
877505e85e Merge pull request #646 from ammaraskar/ruspiro-singleton
[patched] Add advisory for data race in ruspiro-singleton
2021-01-22 20:26:54 +01:00
Ammar Askar
f7307c1304 Add advisory for data race in ruspiro-singleton 2021-01-22 11:09:50 -08:00
Sergey "Shnatsel" Davidoff
c6a1282c5f Merge pull request #645 from RustSec/assign-ids
dummy commit to initialize ID assignment race detection
2021-01-22 00:38:49 +01:00
tarcieri
bd83e1ecc2 Assigned 2021-01-21 23:33:06 +00:00
Sergey "Shnatsel" Davidoff
c910443c13 ID assignment action: guard against race conditions (#641)
* ID assignment action: guard against race conditions resulting in duplicate ID assignment

* Add duplicate ID guard file
2021-01-21 15:32:36 -08:00
Sergey "Shnatsel" Davidoff
6ee36b9a18 Delete duplicate advisory for may_queue 2021-01-21 23:44:29 +01:00
Sergey "Shnatsel" Davidoff
b01064fb98 Merge pull request #644 from RustSec/assign-ids
Assigned RUSTSEC-2020-0114 to va-ts
2021-01-21 23:42:16 +01:00
Shnatsel
b72b2c0ad2 Assigned RUSTSEC-2020-0114 to va-ts 2021-01-21 22:41:46 +00:00
Sergey "Shnatsel" Davidoff
0b3a054ef3 Merge pull request #642 from JOE1994/0077-va-ts
va-ts: `Demuxer` can carry non-Send types across thread boundaries
2021-01-21 23:41:19 +01:00
JOE1994
464571fbe1 Report 0077-va-ts to RustSec 2021-01-21 17:21:40 -05:00
Sergey "Shnatsel" Davidoff
9f4be3dd3e Merge pull request #639 from RustSec/rand-more-patched-versions
Update RUSTSEC-2019-0035.md with more patched versions
2021-01-20 20:53:55 +01:00
Sergey "Shnatsel" Davidoff
e084c94822 Update RUSTSEC-2019-0035.md 2021-01-20 20:52:39 +01:00
Sergey "Shnatsel" Davidoff
9c7561051d Merge pull request #637 from RustSec/assign-ids
Assigned RUSTSEC-2020-0113 to atomic-option
2021-01-20 20:49:48 +01:00
Shnatsel
21eb4cbc87 Assigned RUSTSEC-2020-0113 to atomic-option 2021-01-20 19:47:43 +00:00
Sergey "Shnatsel" Davidoff
c49be99884 Merge pull request #588 from JOE1994/atomic-option
unconditional Sync impl of `AtomicOption<T>` allows UB
2021-01-20 20:47:06 +01:00
Sergey "Shnatsel" Davidoff
057acf9d06 Merge pull request #635 from RustSec/assign-ids
Assigned RUSTSEC-2021-0011 to fil-ocl
2021-01-20 20:39:08 +01:00
Shnatsel
ba5918eaf9 Assigned RUSTSEC-2021-0011 to fil-ocl 2021-01-20 19:38:26 +00:00
Sergey "Shnatsel" Davidoff
004b3a9df5 Merge pull request #587 from ammaraskar/ocl
Add advisory for double-free in fil-ocl
2021-01-20 20:37:54 +01:00
Sergey "Shnatsel" Davidoff
b37e58bac3 Fix consistency: remove duplicated advisory for buttplug crate 2021-01-20 20:34:23 +01:00
Sergey "Shnatsel" Davidoff
6280792aa7 Fix consistency: rename duplicated RUSTSEC-2020-0110 to RUSTSEC-2020-0112 2021-01-20 20:33:35 +01:00
Sergey "Shnatsel" Davidoff
dfaa65a23e Merge pull request #633 from RustSec/assign-ids
Assigned RUSTSEC-2020-0111 to may_queue
2021-01-20 20:29:40 +01:00
Sergey "Shnatsel" Davidoff
84badb657b Merge pull request #632 from RustSec/assign-ids
Assigned RUSTSEC-2020-0107 to hashconsing, RUSTSEC-2020-0108 to eventio, RUSTSEC-2020-0109 to stderr, RUSTSEC-2020-0110 to may_queue, RUSTSEC-2020-0111 to buttplug
2021-01-20 20:29:24 +01:00
Shnatsel
7787fef482 Assigned RUSTSEC-2020-0111 to may_queue 2021-01-20 19:29:24 +00:00
Shnatsel
699c1de232 Assigned RUSTSEC-2020-0107 to hashconsing, RUSTSEC-2020-0108 to eventio, RUSTSEC-2020-0109 to stderr, RUSTSEC-2020-0110 to may_queue, RUSTSEC-2020-0111 to buttplug 2021-01-20 19:29:04 +00:00
Sergey "Shnatsel" Davidoff
645376911b Merge pull request #631 from RustSec/assign-ids
Assigned RUSTSEC-2020-0107 to hashconsing, RUSTSEC-2020-0108 to eventio, RUSTSEC-2020-0109 to stderr, RUSTSEC-2020-0110 to buttplug
2021-01-20 20:28:51 +01:00
Sergey "Shnatsel" Davidoff
d56a3d1c05 Merge pull request #583 from setuid0x0/may_queue
Add advisory for data race in may_queue
2021-01-20 20:28:28 +01:00
Sergey "Shnatsel" Davidoff
fed89e1d03 Update RUSTSEC-0000-0000.md 2021-01-20 20:28:21 +01:00
Shnatsel
5c08407376 Assigned RUSTSEC-2020-0107 to hashconsing, RUSTSEC-2020-0108 to eventio, RUSTSEC-2020-0109 to stderr, RUSTSEC-2020-0110 to buttplug 2021-01-20 19:27:09 +00:00
Sergey "Shnatsel" Davidoff
47c5a6ffd9 Merge pull request #584 from setuid0x0/hashconsing
Add advisory for data race in hashconsing
2021-01-20 20:26:36 +01:00
Sergey "Shnatsel" Davidoff
a460cded8f Merge pull request #585 from ammaraskar/stderr
Add unmaintained advisory for stderr crate
2021-01-20 20:25:56 +01:00
Sergey "Shnatsel" Davidoff
1a2139bee4 Merge pull request #592 from JOE1994/buttplug
data race in `ButtplugFutureStateShared<T>`
2021-01-20 20:24:59 +01:00
Sergey "Shnatsel" Davidoff
73c54e1226 Merge pull request #629 from RustSec/assign-ids
Assigned RUSTSEC-2021-0009 to basic_dsp_matrix, RUSTSEC-2021-0010 to containers
2021-01-20 20:23:37 +01:00
Shnatsel
18a174be75 Assigned RUSTSEC-2021-0009 to basic_dsp_matrix, RUSTSEC-2021-0010 to containers 2021-01-20 19:23:09 +00:00
Sergey "Shnatsel" Davidoff
86729f4ca9 Merge pull request #600 from JOE1994/eventio
eventio: Input<R>' can send non-Send types to other threads
2021-01-20 20:23:08 +01:00