Commit Graph

  • ae4bf4ea16 Assigned RUSTSEC-2023-0072 to openssl (#1827) github-actions[bot] 2023-11-28 09:17:30 -05:00
  • c420785f45 openssl X509StoreRef::objects is unsound (#1824) Alex Gaynor 2023-11-28 09:16:52 -05:00
  • a9468c3c3a Assigned RUSTSEC-2023-0071 to rsa (#1826) github-actions[bot] 2023-11-28 07:10:45 -07:00
  • b40bd2ae82 Add Marvin Attack on rsa crate (#1825) Tony Arcieri 2023-11-28 07:09:29 -07:00
  • 3338fcfb59 Assigned RUSTSEC-2023-0070 to self_cell (#1820) github-actions[bot] 2023-11-11 14:59:01 +00:00
  • 0c128ba5cc Add Insufficient covariance check makes self_cell unsound (#1818) Lukas Bergdoll 2023-11-11 15:48:23 +01:00
  • 0f4e16f7cd Add patched version to RUSTSEC-2023-0029 (#1817) Paolo Barbolini 2023-11-08 10:57:41 +01:00
  • 378e212597 Assigned RUSTSEC-2023-0069 to sudo-rs (#1816) github-actions[bot] 2023-11-06 12:48:19 +00:00
  • 6887c29bff sudo-rs: Path Traversal vulnerability (#1814) Meet Patel 2023-11-06 18:17:10 +05:30
  • 088ec034cf Remove CVE-2020-25575 from RUSTSEC-2019-0030 aliases (#1815) Michael Kedar 2023-11-03 00:03:48 +11:00
  • 0c251c3c9a add CVE alias to RUSTSEC-2023-0066 (#1811) Alexander Kjäll 2023-10-28 18:16:37 +02:00
  • 57d5993efb Assigned RUSTSEC-2023-0068 to cocoon (#1810) github-actions[bot] 2023-10-23 19:38:27 -06:00
  • 0da5ced09c cocoon: sequential calls of encryption API result in nonce reuse (<=0.3.3) (#1805) Alexander Fadeev 2023-10-24 04:36:07 +03:00
  • 71d80e811f Updating information about replacements (#1803) Noam Ta Shma 2023-10-15 00:21:18 +03:00
  • 58c33af7fa Assigned RUSTSEC-2023-0067 to fehler (#1801) github-actions[bot] 2023-10-14 09:01:02 -06:00
  • 184d6c72af fehler is unmaintained (#1800) SandaruKasa 2023-10-14 17:50:37 +03:00
  • da470caa84 Assigned RUSTSEC-2023-0066 to pleaser (#1799) github-actions[bot] 2023-10-03 13:53:18 +00:00
  • 59c41cbaa6 Document the privilege-escalation vulnerability in pleaser. (#1798) Alexander Kjäll 2023-10-03 13:52:15 +00:00
  • 46754ce937 Update webpki RUSTSEC-2023-0052 advisory. (#1797) Brian Smith 2023-09-30 13:13:23 -07:00
  • 4c60d39456 Assigned RUSTSEC-2023-0065 to tungstenite (#1796) github-actions[bot] 2023-09-29 12:03:03 +00:00
  • 2a2c8a0f01 Create advisory for tungstenite DoS (#1795) Dirkjan Ochtman 2023-09-29 14:00:45 +02:00
  • 9b6403d856 Add patch version (#1794) Max Ammann 2023-09-28 16:31:43 +02:00
  • b2af5ad856 Update info about CVE-2023-5129 (#1793) Kornel 2023-09-26 14:50:50 +01:00
  • 8c5609f192 Bump rustsec-admin to 0.8.8 (#1791) Sergey "Shnatsel" Davidoff 2023-09-25 18:00:04 +00:00
  • 7b510556ab Assigned RUSTSEC-2023-0064 to gix-transport (#1790) github-actions[bot] 2023-09-25 12:04:51 +00:00
  • 851e5c9638 Add notice to gix-transport crate (#1789) Sebastian Thiel 2023-09-25 14:03:35 +02:00
  • 81594d9fd5 Assigned RUSTSEC-2023-0063 to quinn-proto (#1788) github-actions[bot] 2023-09-21 11:37:21 +00:00
  • 69e85eff7f Add advisory for quinn-proto DoS issue (#1787) Dirkjan Ochtman 2023-09-21 13:30:28 +02:00
  • 12719bd23b Assigned RUSTSEC-2023-0062 to bcder (#1783) github-actions[bot] 2023-09-13 17:52:21 +02:00
  • 3fefc61182 CVE-2023-39914 in bcder. (#1782) Martin Hoffmann 2023-09-13 17:46:14 +02:00
  • 19e0777eb7 Assigned RUSTSEC-2023-0060 to libwebp-sys2, RUSTSEC-2023-0061 to libwebp-sys (#1781) github-actions[bot] 2023-09-13 10:10:22 -04:00
  • 0636c357b3 CVE-2023-4863 in vendored libwebp (#1780) Kornel 2023-09-13 15:09:35 +01:00
  • 1b75b995e7 RUSTSEC-2023-0059: add "uzers" fork as alternative for "users" (#1779) Fabio Valentini 2023-09-12 20:31:49 +02:00
  • caa8aa3dd0 Assigned RUSTSEC-2023-0059 to users (#1778) github-actions[bot] 2023-09-10 20:57:04 -04:00
  • 88ef232903 Unaligned read in users crate (#1776) David Tolnay 2023-09-10 17:56:33 -07:00
  • 552ac23f93 Assigned RUSTSEC-2023-0058 to inventory (#1777) github-actions[bot] 2023-09-10 20:54:53 -04:00
  • 65f49796ee Inventory 0.1 is unsound (exposure of non-Sync reference) (#1775) David Tolnay 2023-09-10 17:54:03 -07:00
  • d30ca83160 Assigned RUSTSEC-2023-0057 to inventory (#1774) github-actions[bot] 2023-09-10 19:34:00 +02:00
  • ca0b8b9614 Inventory 0.1 is unsound (allows std access before init of Rust runtime) (#1773) David Tolnay 2023-09-10 10:31:21 -07:00
  • 0fcce3f7cb Bump rustsec-admin to 0.8.7 (#1772) Alexis Mousset 2023-09-08 17:30:37 +02:00
  • 370cdc73f5 add additional replacement for ansi_term (#1768) Preston Thorpe 2023-09-06 18:52:31 -04:00
  • d437be8576 Assigned RUSTSEC-2023-0056 to vm-memory (#1767) github-actions[bot] 2023-09-06 19:18:09 +02:00
  • c9fe870edd Import CVE-2023-41051 as RustSec advisory (#1766) Patrick Roy 2023-09-06 17:17:14 +00:00
  • 53652d63d2 Bump actions/checkout from 3 to 4 (#1765) dependabot[bot] 2023-09-04 16:33:17 +02:00
  • 8ac7d56b75 Assigned RUSTSEC-2023-0055 to lexical (#1764) github-actions[bot] 2023-09-03 20:18:34 +02:00
  • a6f3295ed6 Add an advisory for lexical (#1763) Sergey "Shnatsel" Davidoff 2023-09-03 20:17:39 +02:00
  • a6c90b9cd0 Update webpki RUSTSEC-2023-0052 advisory. (#1762) Brian Smith 2023-08-30 15:01:29 -07:00
  • cbf97de9b7 Add documentation for advisories licenses (#1761) Alexis Mousset 2023-08-28 17:52:35 +02:00
  • 65e32a757b Sync advisories ids from GitHub (#1760) Alexis Mousset 2023-08-27 17:52:52 +02:00
  • d401af5af8 Add jzon as alternative recommendation for json (#1759) Sandro-Alessio Gierens 2023-08-25 19:52:15 +02:00
  • 5373b7ebb0 Assigned RUSTSEC-2023-0054 to mail-internals (#1758) github-actions[bot] 2023-08-24 10:21:13 +00:00
  • 3f70263445 mail-internals memory corruption (#1741) наб 2023-08-24 12:20:06 +02:00
  • 5bde16559d README.md: Link to HOWTO_UNMAINTAINED.md (#1754) Samuel Moelius 2023-08-23 08:14:50 -04:00
  • 214d69f125 Assigned RUSTSEC-2023-0052 to webpki, RUSTSEC-2023-0053 to rustls-webpki (#1753) github-actions[bot] 2023-08-22 12:45:02 +00:00
  • ff6edc9823 CPU denial of service in rustls-webpki and webpki crates (#1752) ctz 2023-08-22 13:44:03 +01:00
  • 7600054d6c Add uzers as alternative recommendation for users (#1751) Sandro-Alessio Gierens 2023-08-21 12:35:45 +02:00
  • ae12a8f93f Assigned RUSTSEC-2023-0051 to dlopen_derive (#1747) github-actions[bot] 2023-08-19 12:29:52 +02:00
  • f7511e0fa3 Add unmaintained dlopen_derive advisory (#1735) Samuel Moelius 2023-08-19 06:23:53 -04:00
  • f76ea1c128 Assigned RUSTSEC-2023-0050 to multipart (#1746) github-actions[bot] 2023-08-18 22:38:40 +02:00
  • d98c58dda0 Add unmaintained multipart crate (#1679) Sanpi 2023-08-18 22:35:57 +02:00
  • 58aa4552f3 Assigned RUSTSEC-2022-0093 to ed25519-dalek (#1745) github-actions[bot] 2023-08-14 11:14:25 -06:00
  • 9012b65f10 Add Double Public Key Signing Function Oracle Attack on ed25519-dalek (#1744) Tony Arcieri 2023-08-14 11:12:30 -06:00
  • 15e3b1b071 Assigned RUSTSEC-2023-0049 to tui (#1740) github-actions[bot] 2023-08-07 07:27:47 -06:00
  • e27f9d4f8a Add unmaintained tui advisory (#1739) Orhun Parmaksız 2023-08-07 15:26:03 +02:00
  • 98e8483ac1 Update aliases from GHSA OSV export (#1734) Alexis Mousset 2023-07-29 19:20:00 +02:00
  • 926c7faf15 Assigned RUSTSEC-2023-0048 to intaglio (#1733) github-actions[bot] 2023-07-27 00:15:10 +02:00
  • 3cf8a9354f Add advisory for unsoundness in intaglio symbol interners (#1732) Ryan Lopopolo 2023-07-26 15:11:22 -07:00
  • 4aa517564d Assigned RUSTSEC-2023-0047 to lmdb-rs (#1730) github-actions[bot] 2023-07-18 16:37:16 +00:00
  • 782315865b report unsoundness of lmdb-rs (#1724) Rafael 2023-07-18 12:36:20 -04:00
  • 1d12a1c2e3 Fix typos (#1729) Alexis Mousset 2023-07-15 17:07:13 +02:00
  • 5ceeefcbba Bump rustsec-admin to 0.8.6 (#1728) Alexis Mousset 2023-07-08 16:04:33 +02:00
  • c2b1e4cab4 Update aliases from GHSA OSV export (#1727) Alexis Mousset 2023-07-08 14:30:19 +02:00
  • 1f538e6f3b Update RUSTSEC-2021-0145.md with stable IsTerminal (#1725) Linus Färnstrand 2023-06-29 14:21:59 +02:00
  • 9cf72357c8 Assigned RUSTSEC-2023-0046 to cyfs-base (#1723) github-actions[bot] 2023-06-22 09:43:08 -06:00
  • a64182cf0f report misaligned pointer dereference in cyfs-base (#1718) Rafael 2023-06-22 11:42:06 -04:00
  • 76c37849b6 Assigned RUSTSEC-2023-0045 to memoffset (#1722) github-actions[bot] 2023-06-21 12:29:36 +00:00
  • 27aa255f11 Add advisory to memoffset (#1721) Kisaragi 2023-06-21 21:23:59 +09:00
  • 29b04da119 Assigned RUSTSEC-2023-0044 to openssl (#1720) github-actions[bot] 2023-06-20 17:34:12 -04:00
  • e8534eadc5 Report buffer-overread in OpenSSL (#1719) Alex Gaynor 2023-06-20 16:32:25 -05:00
  • 37abf6e463 Update RUSTSEC-2023-0042 to reflect patch. (#1717) joshua-maros 2023-06-15 04:07:09 -07:00
  • 13b9455e9f Assigned RUSTSEC-2023-0043 to ftp (#1714) github-actions[bot] 2023-06-14 07:23:36 -06:00
  • 3ad954ae91 Add unmaintained ftp crate (#1612) Christian Visintin 2023-06-14 15:21:57 +02:00
  • 84c633df9c Update aliases from GHSA OSV export (#1693) Alexis Mousset 2023-06-13 15:10:24 +02:00
  • ea9ad160b6 Assigned RUSTSEC-2023-0042 to ouroboros (#1708) github-actions[bot] 2023-06-12 02:10:09 +02:00
  • ae311156f9 Ouroboros Soundess Issue (#1707) joshua-maros 2023-06-11 17:08:57 -07:00
  • af3f3d503f Assigned RUSTSEC-2023-0041 to trust-dns-server (#1704) github-actions[bot] 2023-06-03 19:41:41 +00:00
  • a14884ebf4 Vulnerability in trust-dns and trust-dns-server (#1703) Jonas Bushart 2023-06-03 21:40:41 +02:00
  • d32ef82010 Assigned RUSTSEC-2023-0040 to users (#1702) github-actions[bot] 2023-06-01 10:22:47 -06:00
  • 99d0a82b66 🦺 Advisory for unmaintained crate, users (#1701) Zeeshan Ali Khan 2023-06-01 18:15:25 +02:00
  • f343db0846 Assigned RUSTSEC-2023-0039 to buffered-reader (#1700) github-actions[bot] 2023-05-31 23:03:14 +02:00
  • 8a7fc61c92 Add advisory for buffered-reader (#1697) Neal H. Walfield 2023-05-31 23:02:26 +02:00
  • 66dbd2c1a8 Assigned RUSTSEC-2023-0038 to sequoia-openpgp (#1699) github-actions[bot] 2023-05-31 23:02:12 +02:00
  • ee9ec5f605 Add advisory for sequoia-openpgp (#1696) Neal H. Walfield 2023-05-31 22:54:59 +02:00
  • e162556b9e Suggest kuchikiki as an alternative to kuchiki (#1698) Ralph Giles 2023-05-23 13:17:25 -07:00
  • 0e97e6e71f Assigned RUSTSEC-2023-0037 to xsalsa20poly1305 (#1695) github-actions[bot] 2023-05-16 21:02:51 -06:00
  • dc083e6955 xsalsa20poly1305 is unmaintained (#1694) Tony Arcieri 2023-05-16 21:01:49 -06:00
  • 50bed3ba40 xml-rs is maintained (#1691) Kornel 2023-05-05 08:39:54 +01:00
  • d72795ee51 Assigned RUSTSEC-2023-0036 to tree_magic (#1689) github-actions[bot] 2023-04-24 21:08:42 -06:00
  • cb9a1fea8e Add unmaintained tree_magic crate (#1678) Sanpi 2023-04-25 04:54:26 +02:00
  • 5f4eca1362 Assigned RUSTSEC-2023-0035 to enumflags2 (#1688) github-actions[bot] 2023-04-23 14:33:42 -06:00