Commit Graph

545 Commits

Author SHA1 Message Date
Shnatsel
a3ebb21ef9 Assigned RUSTSEC-2020-0104 to gfwx 2021-01-20 19:06:48 +00:00
Sergey "Shnatsel" Davidoff
f94159043a Merge pull request #610 from JOE1994/0056-gfwx
gfwx: ImageChunkMut needs bounds on its Send and Sync traits
2021-01-20 20:06:16 +01:00
Shnatsel
d94c3186b5 Assigned RUSTSEC-2020-0103 to autorand 2021-01-20 19:05:16 +00:00
Sergey "Shnatsel" Davidoff
6f1a8b76d8 Merge pull request #617 from RustSec/assign-ids
Assigned RUSTSEC-2020-0102 to late-static
2021-01-20 20:04:42 +01:00
Sergey "Shnatsel" Davidoff
3c18ffd713 Merge pull request #612 from JOE1994/0084-autorand
autorand: `impl Random` on arrays can lead to dropping uninitialized memory
2021-01-20 20:04:30 +01:00
Shnatsel
42c9d1d7cd Assigned RUSTSEC-2020-0102 to late-static 2021-01-20 19:04:04 +00:00
Sergey "Shnatsel" Davidoff
46c1424ad2 Merge pull request #611 from JOE1994/0035-late-static
late-static: LateStatic
2021-01-20 20:03:34 +01:00
Shnatsel
a9736dd366 Assigned RUSTSEC-2020-0101 to conquer-once 2021-01-20 18:58:27 +00:00
Sergey "Shnatsel" Davidoff
a7921802fb Merge pull request #579 from ammaraskar/conquer-once
[patched] Add advisory for data race in conquer-once
2021-01-20 19:57:52 +01:00
JOE1994
0638fb626e Report 0084-autorand to RustSec 2021-01-19 23:32:36 -05:00
JOE1994
320268aaf8 Report 0035-late-static to RustSec 2021-01-19 23:16:17 -05:00
JOE1994
4fc43f9a2a Report 0056-gfwx to RustSec 2021-01-19 22:48:04 -05:00
Shnatsel
a7caf20666 Assigned RUSTSEC-2020-0100 to sys-info 2021-01-19 22:38:02 +00:00
ABGH, C
ad82bc5daa Add advisory for double-free in sys-info 2021-01-19 16:31:30 -06:00
Shnatsel
12c7b0b4b5 Assigned RUSTSEC-2021-0007 to av-data 2021-01-19 19:17:35 +00:00
Sergey "Shnatsel" Davidoff
5dfa7f4b96 Merge pull request #574 from JOE1994/av-data
av-data: read from arbitrary address in safe API
2021-01-19 20:17:03 +01:00
JOE1994
bf2e0aae1a av-data bug fixed in release 0.3.0 2021-01-19 14:05:02 -05:00
github-actions[bot]
89b9e10631 Assigned RUSTSEC-2021-0006 to cache (#598)
Co-authored-by: tarcieri <tarcieri@users.noreply.github.com>
2021-01-19 07:45:15 -08:00
Stefan Bühler
97aa97b0b7 cache: exposes internally used raw pointer (#543)
Co-authored-by: Tony Arcieri <bascule@gmail.com>
2021-01-19 07:40:52 -08:00
github-actions[bot]
315e464cd6 Assigned RUSTSEC-2020-0099 to aovec (#596)
Co-authored-by: tarcieri <tarcieri@users.noreply.github.com>
2021-01-19 07:34:42 -08:00
Ammar Askar
c988655410 Add advisory for data race in aovec (#528) 2021-01-19 07:31:18 -08:00
github-actions[bot]
3fbe06486f Assigned RUSTSEC-2020-0098 to rusb (#581)
Co-authored-by: tarcieri <tarcieri@users.noreply.github.com>
2021-01-18 16:23:21 -08:00
Ammar Askar
d7de84eddd Add advisory for data race in rusb (#580) 2021-01-18 16:20:42 -08:00
Ammar Askar
6fb69056e2 Add advisory for data race in conquer-once 2021-01-18 15:44:41 -08:00
Shnatsel
ea86742059 Assigned RUSTSEC-2020-0097 to xcb 2021-01-18 21:10:35 +00:00
JOE1994
3a722f1f73 av-data: read from arbitrary address in safe API 2021-01-18 16:10:08 -05:00
Yechan Bae
1613b211a4 Report 0063-xcb to RustSec 2021-01-18 16:07:03 -05:00
Shnatsel
b2a7af1c9b Assigned RUSTSEC-2020-0096 to im 2021-01-18 20:56:32 +00:00
Sergey "Shnatsel" Davidoff
28f74a84c7 Merge pull request #569 from Qwaz/0025-im
im: TreeFocus lacks bounds on its Send and Sync traits
2021-01-18 21:56:01 +01:00
Shnatsel
4cf4c54978 Assigned RUSTSEC-2021-0005 to glsl-layout 2021-01-18 20:55:01 +00:00
Yechan Bae
47061ba310 Report 0025-im to RustSec 2021-01-18 15:50:10 -05:00
JOE1994
efb79effca report double drop issue in glsl-layout 2021-01-18 15:41:35 -05:00
Shnatsel
47d589b0bd Assigned RUSTSEC-2021-0004 to lazy-init 2021-01-18 19:54:50 +00:00
Sergey "Shnatsel" Davidoff
6703edaf88 apply review changes 2021-01-18 20:51:26 +01:00
Niklas Fiekas
6ea698b85d lazy-init: Missing Send bound for Lazy (khuey/lazy-init#9) 2021-01-17 21:41:50 +01:00
Yechan Bae
b08a98acc7 Fix typo in http CVE number (#564) 2021-01-15 07:32:15 -08:00
Jeffrey Robinson
14b29c77eb Typo in RUSTSEC-2020-0013 (#562)
Minor typo.
2021-01-14 09:57:27 -08:00
Matt Brubeck
7feb037b84 RUSTSEC-2020-0017.md (use-after-free in internment) is fixed (#554)
The vulnerability in this report was fixed in internment 0.4.0.  For details, see
https://github.com/droundy/internment/issues/11#issuecomment-758862385.
2021-01-12 11:05:27 -08:00
Shnatsel
519862dda6 Assigned RUSTSEC-2021-0003 to smallvec 2021-01-08 18:14:52 +00:00
Matt Brubeck
dfe84fd15f smallvec: Buffer overflow in insert_many 2021-01-08 09:57:23 -08:00
Sergey "Shnatsel" Davidoff
aa3b156442 do not suggest pretty_assertions as an alternative
because it depends on `difference`
2021-01-07 05:01:36 +01:00
Shnatsel
87208edb17 Assigned RUSTSEC-2020-0094 to reffers, RUSTSEC-2020-0095 to difference 2021-01-06 16:13:10 +00:00
Sergey "Shnatsel" Davidoff
9ff73c540d Merge pull request #538 from brightly-salty/difference
Create advisory for difference
2021-01-06 17:12:25 +01:00
Youngsuk Kim
89a73839e7 add advisory for data race in reffers (#533) 2021-01-06 08:10:43 -08:00
github-actions[bot]
31d74c5408 Assigned RUSTSEC-2021-0002 to interfaces2 (#549)
Co-authored-by: Shnatsel <Shnatsel@users.noreply.github.com>
2021-01-06 08:07:19 -08:00
Sergey "Shnatsel" Davidoff
76a2a25ecc Merge pull request #545 from dalance/add_interfaces2
Add advisory for interfaces2
2021-01-06 17:06:05 +01:00
github-actions[bot]
4ef9441cbd Assigned RUSTSEC-2021-0001 to mdbook (#548)
Co-authored-by: tarcieri <tarcieri@users.noreply.github.com>
2021-01-04 09:50:29 -08:00
Yechan Bae
846dfb93a3 Update CVE numbers (#542) 2021-01-04 09:02:59 -08:00
Pietro Albini
71c5fdb926 add CVE-2020-26297 to mdbook <= 0.4.4 (#546) 2021-01-04 07:55:43 -08:00
dalance
14a3b0cead Add advisory for interfaces2 2021-01-04 18:34:12 +09:00