Commit Graph

  • 0631800c0a Assigned RUSTSEC-2024-0335 to gix-transport (#1943) main github-actions[bot] 2024-04-13 18:16:35 +01:00
  • db2acf4504 Fix date in gix-transport advisory before ID assignment (#1944) Sergey "Shnatsel" Davidoff 2024-04-13 18:15:24 +01:00
  • 70f47a8128 Advisory for gix-transport (#1942) Sergey "Shnatsel" Davidoff 2024-04-13 18:11:17 +01:00
  • f1cc8f3fec RUSTSEC-2023-0079: fix typos; add alternative (#1941) Tony Arcieri 2024-04-12 15:07:31 -06:00
  • 6807f8cd07 Assigned RUSTSEC-2024-0334 to libp2p-tokio-socks5 (#1939) github-actions[bot] 2024-04-12 10:31:39 -06:00
  • 31f2f2bb91 Add advisory for libp2p-tokio-socks5 (#1932) Tobin C. Harding 2024-04-13 02:30:00 +10:00
  • f9c86528b5 Assigned RUSTSEC-2024-0333 to rsa-export (#1938) github-actions[bot] 2024-04-12 10:29:46 -06:00
  • 8c82846cb5 File unmaintained advisory for rsa-export (#1933) Aumetra Weisman 2024-04-12 18:28:59 +02:00
  • c9858c0fc6 Synchronize IDs (2024-04-11) (#1936) github-actions[bot] 2024-04-11 17:16:20 +01:00
  • 0bc9a77248 Assigned RUSTSEC-2024-0332 to h2 (#1931) github-actions[bot] 2024-04-03 14:23:14 -04:00
  • 66dbcd37f5 h2: continuation flood cause degradation of service (#1930) Sean McArthur 2024-04-03 14:22:17 -04:00
  • 799ff4a106 Assigned (#1928) github-actions[bot] 2024-03-31 08:47:08 -06:00
  • e53b0f078e Add an unmaintained crate advisory for puccinier (#1927) rubyowo 2024-03-31 14:44:37 +00:00
  • aa8e65c812 Assigned (#1924) github-actions[bot] 2024-03-25 10:34:40 +01:00
  • 9ad163110a Add an unmaintained crate advisory for yaml-rust (#1922) David Aguilar 2024-03-25 02:14:09 -07:00
  • 369d98c1b9 Assigned RUSTSEC-2023-0085 to hpack (#1920) github-actions[bot] 2024-03-15 16:18:14 +01:00
  • 61f79bd545 Add hpack panics (#1919) Carter Snook 2024-03-11 12:28:23 -05:00
  • 120db258e9 Assigned RUSTSEC-2024-0021 to eyre, RUSTSEC-2023-0084 to hpack (#1916) github-actions[bot] 2024-03-06 07:01:14 -07:00
  • 900e79c91c eyre: Parts of Report are dropped as the wrong type during downcast (#1918) David Tolnay 2024-03-06 01:25:01 -08:00
  • ed0e7822b7 Add security advisory for unmaintained hpack crate (#1915) Carter Snook 2024-03-05 21:03:18 -06:00
  • f45909805e update RUSTSEC-2024-0020 with additional information (#1913) Rain 2024-03-05 18:24:35 -08:00
  • f9cd39af86 Assigned RUSTSEC-2024-0020 to whoami (#1912) github-actions[bot] 2024-03-05 01:31:53 +00:00
  • 7af45b5924 Add advisory for stack buffer overflow with whoami (#1911) Rain 2024-03-04 17:31:02 -08:00
  • c4a34bd3e1 add migration instructions for safemem (#1909) Bennet Bleßmann 2024-03-04 19:47:07 +01:00
  • 200d7aa324 Assigned RUSTSEC-2024-0019 to mio (#1908) github-actions[bot] 2024-03-04 18:51:31 +01:00
  • 023fbf4b2c Add advisory for CVE-2024-27308 in mio (#1907) Alice Ryhl 2024-03-04 18:21:01 +01:00
  • 9ec5743512 Assigned RUSTSEC-2023-0083 to blurhash (#1906) github-actions[bot] 2024-03-02 17:22:42 +00:00
  • 9b0fad7608 blurhash-rs panic-on-parse (#1786) Ruben De Smet 2024-03-02 18:21:59 +01:00
  • eb02e7e60e Assigned RUSTSEC-2024-0018 to crayon (#1905) github-actions[bot] 2024-03-01 03:33:41 +00:00
  • 2c791341a0 Add non-informational crayon advisory (#1900) Kane York 2024-02-29 19:25:45 -08:00
  • 38776a740d Assigned RUSTSEC-2023-0082 to phonenumber (#1904) github-actions[bot] 2024-02-29 21:46:35 +00:00
  • 2dafb038ad rust-phonenumber panic-on-parse (#1785) Ruben De Smet 2024-02-29 22:46:09 +01:00
  • ebbd93b9ed Assigned RUSTSEC-2024-0017 to cassandra-cpp (#1903) github-actions[bot] 2024-02-28 17:09:55 +00:00
  • 1750488701 cassandra-cpp: non-idiomatic use of iterators leads to use after free (#1902) Keith Wansbrough 2024-02-28 17:06:07 +00:00
  • feb54ac57e Add crypto-failure category to snow advisory (#1899) Kane York 2024-02-22 15:43:06 -08:00
  • 22ee9f7e10 Assigned RUSTSEC-2023-0081 to safemem (#1898) github-actions[bot] 2024-02-22 20:43:37 +00:00
  • dfccc241b8 Add unmaintained advisory for safemem (#1615) Ossi Herrala 2024-02-22 22:42:28 +02:00
  • cbfea3ac86 Add patched version for transpose advisory (#1897) Sergey "Shnatsel" Davidoff 2024-02-20 04:04:07 +00:00
  • 1a29db069e Assigned RUSTSEC-2024-0016 to libdav1d-sys (#1896) github-actions[bot] 2024-02-19 17:16:28 +00:00
  • 2d47fb6fcc CVE for libdav1d-sys (#1895) Kalle Samuels 2024-02-19 09:15:45 -08:00
  • 99eb308ec5 Assigned RUSTSEC-2024-0015 to filesystem (#1894) github-actions[bot] 2024-02-18 05:23:45 +01:00
  • 6661b261fd Add unmaintained advisory report for filesystem-rs (#1870) George Holderness 2024-02-18 04:20:39 +00:00
  • a9df130136 Assigned RUSTSEC-2024-0014 to generational-arena (#1893) github-actions[bot] 2024-02-18 05:06:15 +01:00
  • 5611d4d388 Add advisory for generational-arena (#1892) nathaniel-daniel 2024-02-17 20:05:29 -08:00
  • 4484e7ae6b Assigned RUSTSEC-2023-0080 to transpose (#1891) github-actions[bot] 2024-02-17 17:41:17 +00:00
  • dce21838a8 Add advisory for buffer overflow in transpose (#1890) Cai Bear 2024-02-17 09:38:56 -08:00
  • 11d62271d9 Synchronize IDs (2024-02-15) (#1889) github-actions[bot] 2024-02-14 20:22:49 -05:00
  • 8dc77464a3 Fix commit message for ID sync action (#1888) Alexis Mousset 2024-02-15 02:16:10 +01:00
  • 9187931116 Fix commit message for ID sync action (#1887) Alexis Mousset 2024-02-13 05:07:04 +01:00
  • 2792c8d270 Fixed syntax in sync-ids.yml (#1886) Alex Gaynor 2024-02-12 22:56:17 -05:00
  • ff61dbc36b Add workflow_dispatch trigger to sync-ids (#1885) Alex Gaynor 2024-02-12 22:53:39 -05:00
  • a16e39c6e9 Fix commit message for ID sync action (#1884) Alexis Mousset 2024-02-13 04:24:31 +01:00
  • 13e916a953 Add automation for advisories ID sync (#1882) Alexis Mousset 2024-02-12 02:38:51 +01:00
  • e1a39a6085 Sync advisories ids from GitHub (#1881) Alexis Mousset 2024-02-10 16:57:43 +01:00
  • 6c0a974e07 Bump peter-evans/create-pull-request from 5 to 6 (#1874) dependabot[bot] 2024-02-09 21:46:50 -05:00
  • 13d8dc095d Assigned RUSTSEC-2024-0013 to libgit2-sys (#1880) github-actions[bot] 2024-02-09 21:46:05 -05:00
  • da4911ca94 Add advisory for libgit2-sys (#1879) Eric Huss 2024-02-09 18:45:39 -08:00
  • 9afff95de4 Assigned RUSTSEC-2024-0011 to snow, RUSTSEC-2024-0012 to serde-json-wasm (#1878) github-actions[bot] 2024-02-09 02:03:39 +00:00
  • 514e599cbf snow: Unauthenticated Nonce Increment (#1866) Jake McGinty 2024-02-08 21:02:57 -05:00
  • f395a84350 Add serde-json-wasm stack-overflow (#1867) Christoph Otter 2024-02-09 03:02:21 +01:00
  • 2bb64f5005 Assigned RUSTSEC-2023-0079 to pqc_kyber (#1877) github-actions[bot] 2024-02-09 02:00:39 +00:00
  • ad9fb41032 Add advisory for the kyberslash timing attack (#1872) Alexander Kjäll 2024-02-09 02:59:49 +01:00
  • f48f2ed5e0 Assigned RUSTSEC-2024-0010 to svix (#1876) github-actions[bot] 2024-02-06 17:57:48 +00:00
  • d3d8d65101 Add svix signature verification issue (#1875) Aaron 2024-02-06 12:55:25 -05:00
  • 1d2202ea2b Add CVE alias for RUSTSEC-2024-000{8,9} (#1869) Jacob Rothstein 2024-01-24 09:00:49 -08:00
  • e4af460c5d README.md: update maintained image (#1868) Tony Arcieri 2024-01-24 12:49:54 +00:00
  • 7d1034dee2 Assigned RUSTSEC-2024-0008 to trillium-client, RUSTSEC-2024-0009 to trillium-http (#1865) github-actions[bot] 2024-01-24 03:14:25 +00:00
  • de7a809f3e Add advisories for trillium-http and trillium-client (#1864) Jacob Rothstein 2024-01-23 19:13:27 -08:00
  • 7593ce7af2 Assigned RUSTSEC-2024-0007 to rust-i18n-support (#1863) github-actions[bot] 2024-01-23 07:45:36 -07:00
  • b1db690d83 rust-i18n-support: Use-after-free when setting the locale (#1855) René Kijewski 2024-01-23 15:13:25 +01:00
  • c88b5f38f2 Bump actions/cache from 3 to 4 (#1862) dependabot[bot] 2024-01-22 08:08:15 -07:00
  • fbc3b29aca Assigned RUSTSEC-2024-0006 to shlex (#1861) github-actions[bot] 2024-01-22 05:34:54 +00:00
  • c90927bcc6 shlex: multiple issues involving quote API (#1860) comex 2024-01-21 21:33:45 -08:00
  • 7bfe993af3 Assigned RUSTSEC-2024-0005 to threadalone (#1859) github-actions[bot] 2024-01-22 02:05:54 +00:00
  • 412fc10e86 Unsound sending of non-Send types in threadalone, patched (#1858) Sergey "Shnatsel" Davidoff 2024-01-22 02:05:00 +00:00
  • 78ab2418dd Assigned RUSTSEC-2024-0004 to cosmwasm (#1857) github-actions[bot] 2024-01-21 07:51:38 -07:00
  • a623e80cfc Mark crate cosmwasm as unmaintained (#1856) Simon Warta 2024-01-21 15:50:42 +01:00
  • 33acf3edda Assigned RUSTSEC-2024-0003 to h2 (#1853) github-actions[bot] 2024-01-17 21:03:44 +00:00
  • d414753c6d h2: Reset Flood vulnerability may lead to resource exhaustion and DOS (#1852) Noah Kennedy 2024-01-17 15:02:34 -06:00
  • 826f71c402 Assigned RUSTSEC-2023-0078 to tracing (#1851) github-actions[bot] 2024-01-13 22:42:51 -05:00
  • 20b748726d Add soundness advisory for tracing 0.1.38 and 0.1.39 (#1807) Eliza Weisman 2024-01-13 19:42:01 -08:00
  • 938076e0e0 Assigned RUSTSEC-2024-0002 to vmm-sys-util (#1850) github-actions[bot] 2024-01-13 22:39:46 -05:00
  • d5e908dade Assigned RUSTSEC-2024-0001 to ferris-says (#1849) github-actions[bot] 2024-01-13 22:38:29 -05:00
  • f7f59c0974 Import CVE-2023-50711 as RustSec advisory (#1847) Babis Chalios 2024-01-14 04:34:57 +01:00
  • 7b8823be86 Unsound use of str::from_utf8_unchecked in ferris-says (#1848) David Tolnay 2024-01-13 19:33:41 -08:00
  • a5fb72de31 Assigned RUSTSEC-2023-0077 to rosenpass (#1844) github-actions[bot] 2023-12-21 11:45:18 -07:00
  • 20107217b7 Create advisory for DoS in Rosenpass <=0.2.0 (#1823) Morgan Hill 2023-12-21 19:44:13 +01:00
  • dc1d79ccc5 Assigned RUSTSEC-2023-0076 to cpython (#1843) github-actions[bot] 2023-12-20 17:34:55 -05:00
  • 5fbac74663 cpython is unmaintained (#1822) Fabio Valentini 2023-12-20 23:34:08 +01:00
  • d8c40865e9 Assigned RUSTSEC-2023-0075 to unsafe-libyaml (#1842) github-actions[bot] 2023-12-20 17:33:59 -05:00
  • dd8913608d Update the wording of RUSTSEC-2023-0072 (#1831) Trevor Gross 2023-12-20 17:33:20 -05:00
  • 41cc7a12a2 Unaligned write in unsafe-libyaml (#1841) David Tolnay 2023-12-20 14:32:37 -08:00
  • bc17aeb683 Assigned RUSTSEC-2023-0074 to zerocopy (#1839) github-actions[bot] 2023-12-18 08:49:59 -07:00
  • d000c08450 zerocopy: Some Ref methods are unsound with some type params (#1837) Joshua Liebow-Feeser 2023-12-18 07:35:59 -08:00
  • fd71859263 Update CVSS score of RUSTSEC-2023-0071 (#1838) Lukas Braune 2023-12-15 15:57:06 +01:00
  • 6ef1d1fd84 Assigned RUSTSEC-2023-0073 to candid (#1835) github-actions[bot] 2023-12-09 10:05:32 +00:00
  • bcd3d307a6 Add advisory for candid library decoding DoS vulnerability (#1834) Raghav Sundaravaradan 2023-12-09 02:00:43 -08:00
  • 43af5fef05 RUSTSEC-2023-0071: add CVE-2023-49092 as alias (#1830) Tony Arcieri 2023-11-28 10:40:54 -07:00
  • 09b17fcfbf RUSTSEC-2023-0071.md: use '###' section headers (#1829) Tony Arcieri 2023-11-28 09:47:19 -07:00
  • 63d59acfce RUSTSEC-2023-0071: add CVSS, aliases, and new wording (#1828) Tony Arcieri 2023-11-28 08:30:30 -07:00