Commit Graph

301 Commits

Author SHA1 Message Date
Sergey "Shnatsel" Davidoff
8fba4e52f3 fix disclosure date 2020-08-15 03:34:56 +02:00
github-actions[bot]
8cfebb1f2b Assigned RUSTSEC-2019-0036 to failure 2020-08-14 23:04:44 +00:00
Sergey "Shnatsel" Davidoff
1837ccc396 Merge pull request #318 from Qwaz/failure-336
Informational advisory for rust-lang-nursery/failure#336
2020-08-15 01:03:56 +02:00
Yechan Bae
7ba77515fa Apply PR feedback 2020-08-14 18:15:56 -04:00
github-actions[bot]
90624f4e01 Assigned RUSTSEC-2020-0029 to rgb (#350)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-08-14 16:21:16 -04:00
Sergey "Shnatsel" Davidoff
9611ff4c0e Added note about invariants, specified resolution 2020-08-14 21:24:17 +02:00
Sergey "Shnatsel" Davidoff
a61e5b2ca6 Fix spelling
Co-authored-by: HeroicKatora <HeroicKatora@users.noreply.github.com>
2020-08-14 21:19:39 +02:00
Sergey "Shnatsel" Davidoff
5cc0589551 Add advisory for rgb 2020-08-14 18:22:30 +02:00
github-actions[bot]
fdc3c78d2c Assigned RUSTSEC-2020-0028 to rocket (#348)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-08-14 11:51:50 -04:00
Sergey "Shnatsel" Davidoff
1b673b14ea Merge pull request #320 from Qwaz/rocket-1312
Informational advisory for SergioBenitez/Rocket#1312
2020-08-14 17:40:21 +02:00
Vinzent Steinberg
a7b90acdc2 Add alias for GHSA (#346)
Co-authored-by: Tony Arcieri <bascule@gmail.com>
2020-08-01 09:40:07 -07:00
github-actions[bot]
20dbede595 Assign RUSTSEC IDs (#343)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-24 10:16:21 -07:00
Eduardo Sánchez Muñoz
36fb0b786c Add advisory for traitobject (#308)
Co-authored-by: Tony Arcieri <bascule@gmail.com>
2020-07-24 10:10:30 -07:00
github-actions[bot]
fa0771ddb7 Assign RUSTSEC IDs (#342)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-24 10:03:49 -07:00
Vinzent Steinberg
6d238619b6 Undefined behavior in Rand (#149)
Co-authored-by: Ralf Jung <post@ralfj.de>
Co-authored-by: Tony Arcieri <bascule@gmail.com>
2020-07-24 10:00:19 -07:00
github-actions[bot]
ce0b60265d Assign RUSTSEC-2018-0018 to smallvec (#341)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-24 11:48:53 -04:00
Ralf Jung
fca3269356 add smallvec unsoundness (#337) 2020-07-24 11:47:39 -04:00
github-actions[bot]
9ad6be8534 Assign RUSTSEC IDs (#340)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-24 11:47:27 -04:00
Ralf Jung
ace2be3fca add linked-hash-map unsoundness (#316) 2020-07-24 11:46:00 -04:00
github-actions[bot]
c34d120b4f Assign RUSTSEC IDs (#339)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-24 11:45:38 -04:00
Ralf Jung
5b2859bf58 bigint is unmaintained (#338) 2020-07-24 08:34:48 -07:00
Tony Arcieri
33aaadd1fd RUSTSEC-2019-0031: add link to spinning-rs in description (#336) 2020-07-13 09:00:20 -07:00
github-actions[bot]
a5c4d5fc0e Assign RUSTSEC IDs 2020-07-09 20:02:07 +00:00
iliana etaoin
f17173c999 tough: CVE-2020-15093 2020-07-09 12:49:48 -07:00
CreepySkeleton
6b10ce0976 Update yaml-rust advirsory to indicate clap as non-vulnerable (#331) 2020-07-06 08:59:19 -07:00
github-actions[bot]
6b56bccc8c Assign RUSTSEC IDs 2020-07-05 11:48:09 +00:00
Sergey "Shnatsel" Davidoff
fb8d644b16 Merge pull request #319 from Qwaz/rulinalg-201
Security advisory for AtheMathmo/rulinalg#201
2020-07-05 13:47:30 +02:00
github-actions[bot]
c649f53838 Assign RUSTSEC-2020-0022 to ozone (#329)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-04 16:25:40 -04:00
Sergey "Shnatsel" Davidoff
aead4efb76 Merge pull request #328 from Qwaz/ozone
Security advisory for bqv/ozone
2020-07-04 22:22:31 +02:00
Yechan Bae
f17f55472c Fix the function path and make the advisory informational 2020-07-04 01:53:33 -04:00
Yechan Bae
ee09393d32 Security advisory for bqv/ozone 2020-07-04 01:49:52 -04:00
github-actions[bot]
73b40e7d53 Assign RUSTSEC IDs (#326)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-07-03 10:11:14 -04:00
Sergey "Shnatsel" Davidoff
c05fb28d6d Merge pull request #293 from NieDzejkob/rio
Advisory for rio
2020-07-03 16:09:14 +02:00
Yechan Bae
49fcc50d2b Reflect PR feedback and describe what might happen 2020-06-30 17:21:28 -04:00
github-actions[bot]
07ae3fb207 Assign RUSTSEC IDs (#325)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-06-30 11:55:00 -07:00
Jeff Muizelaar
6e2241c06b stb_truetype crate has been deprecated; use ttf-parser instead (#307) 2020-06-30 11:52:27 -07:00
Ralf Jung
9cd619f167 make memoffset advisory informational (#317) 2020-06-30 11:49:45 -07:00
github-actions[bot]
46c23f6c94 Assign RUSTSEC IDs (#323)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-06-30 10:27:13 -07:00
quininer
de07a7d207 Add tokio-rustls DoS advisory (#304) 2020-06-30 02:01:58 -04:00
Yechan Bae
8149410e8d Fix toml format error 2020-06-29 01:40:06 -04:00
Yechan Bae
7c96397ea1 Security advisory for AtheMathmo/rulinalg#201 2020-06-28 01:48:42 -04:00
Yechan Bae
226a6d6dad Security advisory for SergioBenitez/Rocket#1312 2020-06-28 01:09:32 -04:00
Yechan Bae
f81972e8c4 Informational advisory for rust-lang-nursery/failure#336 2020-06-27 20:23:41 -04:00
Tony Arcieri
5049594b75 Add unmaintained crate advisory for block-cipher-trait (RUSTSEC-2020-0018) (#310)
* Add unmaintained crate advisory for `block-cipher-trait`

It's been renamed to `block-cipher`. See:

https://github.com/RustCrypto/traits/pull/139

* Assign RUSTSEC-2020-0018 to block-cipher-trait
2020-06-10 11:22:55 -07:00
Tony Arcieri
8587ec259a Assign RUSTSEC-2020-0017 to internment (#309)
Original PR: https://github.com/RustSec/advisory-db/pull/306
2020-06-07 08:19:36 -07:00
Jeremy Fitzhardinge
0f5a2dc239 Add advisory for internment (#306)
`internment` 0.3.12 has a race condition in ArcIntern::drop which can
result in use-after-free.
2020-06-07 07:55:58 -07:00
Tony Arcieri
7d4ce9ae4f Assign RUSTSEC-2018-0017 to tempdir
Original PR: https://github.com/RustSec/advisory-db/pull/295
2020-05-17 08:58:19 -07:00
Tony Arcieri
4853671ffa Merge pull request #295 from oherrala/tempdir
tempdir crate has been deprecated since 2018-02-13
2020-05-17 08:54:35 -07:00
Tony Arcieri
1639be6561 Assign RUSTSEC-2020-0016 to net2
Original PR: https://github.com/RustSec/advisory-db/pull/296
2020-05-17 08:52:19 -07:00
Ossi Herrala
a3c68605c7 net2 crate has been deprecated; use socket2 instead
Fixes #285
2020-05-13 10:45:41 +03:00