Commit Graph

5 Commits

Author SHA1 Message Date
Tony Arcieri
01ac6725d5 Fix all advisories to pass linter
Mostly related to the `affected_functions` field, which has changed a
few times.
2019-09-09 12:19:01 -07:00
c74d
63fbe9df35 RUSTSEC-2019-0006: Use -0005's format vuln wording
As filed, advisory RUSTSEC-2019-0006 simply notes that certain
functions in the covered crate create a "format vulnerability". This
patch, following up on [an exchange of comments on GitHub][1], edits
advisory RUSTSEC-2019-0006 to summarize the risk introduced by a
format vulnerability, copying the wording of the associated advisory
RUSTSEC-2019-0005.

[1]: <https://github.com/RustSec/advisory-db/pull/107#pullrequestreview-250212575>
2019-06-23 00:41:31 +00:00
Tony Arcieri
047a068ba7 Reassign ncurses vuln from RUSTSEC-2019-0004 => 0006
RUSTSEC-2019-0004 is already assigned to a `libp2p-core` vulnerability.

Apparently we don't have tests to catch this? Unfortunate.
2019-06-18 09:51:54 -07:00
Tony Arcieri
759a11fa8c Assign RUSTSEC-2019-0004 to ncurses
Original PR: https://github.com/RustSec/advisory-db/pull/107
2019-06-18 09:27:56 -07:00
Thom Chiovoloni
5466d5badf Add advisory for ncurses 2019-06-15 13:14:05 -07:00