Commit Graph

  • 439853f667 Create RUSTSEC-0000-0000.toml Stephen M. Coakley 2019-09-01 13:45:03 -05:00
  • 7b363b785a add out-of-bounds memory access in compact_arena < 0.4.0 (#137) llogiq 2019-09-01 19:54:20 +02:00
  • c8c41f939a Add hdr decoder use-after-free advisory (#135) HeroicKatora 2019-09-01 19:46:14 +02:00
  • f758dea601 Merge pull request #136 from RustSec/alex-patch-1 Tony Arcieri 2019-08-31 12:56:09 -07:00
  • de8a052d3e Tell people to delete comments in the example advisory Alex Gaynor 2019-08-31 15:27:07 -04:00
  • 07da5c8ed5 Merge pull request #133 from RustSec/RUSTSEC-2019-0013 Tony Arcieri 2019-08-28 10:36:26 -07:00
  • 44dc01298e Assign RUSTSEC-2019-0013 to spin Tony Arcieri 2019-08-28 10:11:01 -07:00
  • 50a678280c Merge pull request #132 from 64/master Tony Arcieri 2019-08-28 10:09:24 -07:00
  • 5568479c48 Clarify that users of Once are not affected Matt Taylor 2019-08-28 06:37:10 +01:00
  • 3c55761403 Report vulnerability in spin crate's RwLock impl Matt Taylor 2019-08-27 20:09:09 +01:00
  • f9de4aed5b Merge pull request #129 from RalfJung/memoffset Tony Arcieri 2019-07-20 10:24:42 -07:00
  • 9ec1ad0a9c typo Ralf Jung 2019-07-20 13:45:36 +02:00
  • 7e3423c7ec actually memoffset also had an uninit-drop vuln, and that affects all versions ever published Ralf Jung 2019-07-20 12:56:59 +02:00
  • ce7e93d4a9 Merge pull request #128 from RustSec/RUSTSEC-2019-0012 Tony Arcieri 2019-07-19 14:18:21 -07:00
  • 3a175b7b37 Assign RUSTSEC-2019-0012 to smallvec Tony Arcieri 2019-07-19 14:12:20 -07:00
  • 587ac0152c Merge pull request #127 from Shnatsel/patch-1 Tony Arcieri 2019-07-19 13:47:20 -07:00
  • 150700481b Update RUSTSEC-0000-0000.toml Sergey "Shnatsel" Davidoff 2019-07-19 21:45:40 +02:00
  • 3b810f1c13 Add advisory for smallvec issue #149 Sergey "Shnatsel" Davidoff 2019-07-19 21:35:39 +02:00
  • b8451d4f7f Merge pull request #126 from RustSec/RUSTSEC-2019-0011 Tony Arcieri 2019-07-17 10:02:13 -07:00
  • 4d673eedf4 Assign RUSTSEC-2019-0011 to memoffset Tony Arcieri 2019-07-17 09:50:31 -07:00
  • 32d6ae5022 Merge pull request #124 from RalfJung/memoffset Tony Arcieri 2019-07-17 09:43:02 -07:00
  • d18235728a Merge branch 'master' into memoffset Tony Arcieri 2019-07-17 08:37:20 -07:00
  • a081494d7e Merge pull request #125 from RustSec/update-deps Tony Arcieri 2019-07-16 12:39:44 -07:00
  • e3b1fc14bc Update dependencies Tony Arcieri 2019-07-16 12:15:09 -07:00
  • 148b3d2dd0 add memoffset issue Ralf Jung 2019-07-16 15:49:35 +02:00
  • f7a0482e0f Merge pull request #123 from RustSec/RUSTSEC-2019-0010 Tony Arcieri 2019-07-07 11:34:38 -07:00
  • 8b88d66355 Assign RUSTSEC-2019-0010 to libflate Tony Arcieri 2019-07-07 11:25:02 -07:00
  • 27358aef48 Merge pull request #122 from Shnatsel/libflate-advisory Tony Arcieri 2019-07-07 10:49:08 -07:00
  • ab8ae78368 Merge branch 'master' into libflate-advisory Sergey "Shnatsel" Davidoff 2019-07-07 18:45:59 +02:00
  • 5eacb752b4 improve summary Sergey "Shnatsel" Davidoff 2019-07-07 18:45:21 +02:00
  • 6714149494 Add advisory for libflate Sergey "Shnatsel" Davidoff 2019-07-07 18:43:49 +02:00
  • 7c5fccf193 Merge pull request #121 from RustSec/RUSTSEC-2019-0008/fix-link Tony Arcieri 2019-07-03 08:07:32 -07:00
  • 985c55342a RUSTSEC-2019-0008: fix link to disclosure PR Tony Arcieri 2019-07-03 07:37:05 -07:00
  • b37a57de89 Merge pull request #120 from RustSec/RUSTSEC-2019-0009 Tony Arcieri 2019-07-03 07:23:03 -07:00
  • a20910b79f Assign RUSTSEC-2019-0009 to smallvec Tony Arcieri 2019-07-03 06:56:34 -07:00
  • 09936b6d4b Merge pull request #119 from Shnatsel/patch-1 Tony Arcieri 2019-07-02 15:21:43 -07:00
  • 2cbddfd81d Drop comments from new smallvec advisory Sergey "Shnatsel" Davidoff 2019-07-02 22:55:15 +02:00
  • 7af1eac5b1 Rename tentative advisory to please CI Sergey "Shnatsel" Davidoff 2019-06-30 20:11:34 +02:00
  • 144eb01eef Add advisory for SmallVec issues #148 Sergey "Shnatsel" Davidoff 2019-06-30 20:04:20 +02:00
  • 7d2f62d5ed Merge pull request #118 from RustSec/contributing/yanking Tony Arcieri 2019-06-25 17:34:12 -07:00
  • 6890db2d53 CONTRIBUTING.md: Recommend yanking affected versions (closes #74) Tony Arcieri 2019-06-25 17:29:54 -07:00
  • c49ac2cf3f Merge pull request #117 from RustSec/RUSTSEC-2019-0008 Tony Arcieri 2019-06-24 13:31:19 -07:00
  • f0a801979c Assign RUSTSEC-2019-0008 to simd-json Tony Arcieri 2019-06-24 13:20:43 -07:00
  • 003d42c27e Merge pull request #116 from Licenser/simd-json-pr-27 Tony Arcieri 2019-06-24 13:11:21 -07:00
  • 8134840ade Remove comments and fix spelling Heinz N. Gies 2019-06-24 21:11:48 +02:00
  • f65960fb51 Add advisory for segfault bug in simd-json.rs Heinz N. Gies 2019-06-24 20:35:21 +02:00
  • fd759b72f2 Merge pull request #115 from RustSec/RUSTSEC-2019-0007 Tony Arcieri 2019-06-24 10:20:14 -07:00
  • 602f9252e1 Assign RUSTSEC-2019-0007 to asn1_der Tony Arcieri 2019-06-24 09:48:05 -07:00
  • c1a4315346 Merge pull request #113 from KizzyCode/master Tony Arcieri 2019-06-24 09:46:17 -07:00
  • 67edcf34e4 Merge branch 'master' into master Tony Arcieri 2019-06-24 09:32:01 -07:00
  • 4d8795f676 Merge pull request #114 from 8573/8573/use-more-informative-wording-from-RS-2019-0005-in-RS-2019-0006/1 Tony Arcieri 2019-06-24 09:31:29 -07:00
  • 63fbe9df35 RUSTSEC-2019-0006: Use -0005's format vuln wording c74d 2019-06-23 00:31:17 +00:00
  • 2bc9806042 Removed comments KizzyCode 2019-06-22 00:17:25 +02:00
  • 6117c44711 Removed erroneous unaffected versions KizzyCode 2019-06-22 00:05:04 +02:00
  • 90d22af332 Create RUSTSEC-0000-0000.toml KizzyCode 2019-06-21 23:54:40 +02:00
  • 4d3480cc76 Merge pull request #110 from RustSec/RUSTSEC-2019-0006 Tony Arcieri 2019-06-18 10:10:50 -07:00
  • 047a068ba7 Reassign ncurses vuln from RUSTSEC-2019-0004 => 0006 Tony Arcieri 2019-06-18 09:51:54 -07:00
  • 007d291379 Merge pull request #109 from RustSec/RUSTSEC-2019-0004+0005 Tony Arcieri 2019-06-18 09:45:56 -07:00
  • c4397fd8dc Assign RUSTSEC-2019-0005 to pancurses Tony Arcieri 2019-06-18 09:28:49 -07:00
  • 759a11fa8c Assign RUSTSEC-2019-0004 to ncurses Tony Arcieri 2019-06-18 09:27:56 -07:00
  • af0882d810 Merge pull request #107 from thomcc/curses-funcs Tony Arcieri 2019-06-18 09:22:43 -07:00
  • 5522c6c9b9 Merge branch 'master' into curses-funcs Tony Arcieri 2019-06-18 09:13:44 -07:00
  • 66d2b7a148 Merge pull request #108 from thomcc/pancurses-mvprintw Tony Arcieri 2019-06-18 09:12:54 -07:00
  • 7e9fe78ade Add advisory for pancurses Thom Chiovoloni 2019-06-15 13:13:18 -07:00
  • 5466d5badf Add advisory for ncurses Thom Chiovoloni 2019-06-15 13:08:46 -07:00
  • 733c7140d1 Merge pull request #105 from RustSec/RUSTSEC-2016-0003 Tony Arcieri 2019-06-06 17:42:30 -07:00
  • 300f36a20d Assign RUSTSEC-2016-0003 to portaudio Tony Arcieri 2019-06-06 17:34:55 -07:00
  • d1911ab5ab Merge pull request #104 from mcginty/master Tony Arcieri 2019-06-06 17:31:58 -07:00
  • 56350b2803 [portaudio] add build script RCE Jake McGinty 2019-06-06 16:54:16 +09:00
  • 561a9d6e5b Merge pull request #102 from ordian/master Tony Arcieri 2019-05-20 06:51:53 -07:00
  • 49bae94718 [protobuf] fix patched versions Andronik Ordian 2019-05-20 11:20:19 +02:00
  • 76e9c2b32a Merge pull request #103 from ordian/fix-libp2p Tony Arcieri 2019-05-20 06:40:19 -07:00
  • 4b36267927 [libp2p-core] fix patched versions Andronik Ordian 2019-05-20 11:31:17 +02:00
  • e4f5f2a627 Merge pull request #101 from RustSec/RUSTSEC-2019-0003/fix-date Tony Arcieri 2019-05-19 17:05:10 -07:00
  • c300327fd6 RUSTSEC-2019-0003: Fix date Tony Arcieri 2019-05-19 16:37:34 -07:00
  • 39300b6c6d Merge pull request #100 from oherrala/rustsec-2019-0003 Tony Arcieri 2019-05-19 16:50:56 -07:00
  • bfc6f36d20 protobuf 2.6.0 and 1.7.5 released with fix to this issue Ossi Herrala 2019-05-20 01:29:27 +03:00
  • 0854d2baee Merge pull request #99 from RustSec/RUSTSEC-2019-0003+0004 Tony Arcieri 2019-05-15 14:01:40 -07:00
  • 58a4d5b2a2 Assign RUSTSEC-2019-0004 to libp2p-core Tony Arcieri 2019-05-15 13:41:19 -07:00
  • ec1cf8ffb1 Assign RUSTSEC-2019-0003 to protobuf Tony Arcieri 2019-05-15 13:39:46 -07:00
  • c1da669027 Merge pull request #98 from tomaka/libp2p-oops Tony Arcieri 2019-05-15 13:12:52 -07:00
  • 924dd24c23 Add libp2p ed25519 signature verification failure Pierre Krieger 2019-05-15 19:02:48 +02:00
  • c6e83777b7 Merge pull request #97 from gedigi/master Tony Arcieri 2019-05-15 10:09:28 -07:00
  • 1a8bf5bc41 fixed key name Gerardo Di Giacomo 2019-05-15 09:30:53 -07:00
  • f97b9a0ad3 Update RUSTSEC-0000-0000.toml Gerardo Di Giacomo 2019-05-14 19:44:00 -07:00
  • 2885752bf5 Add protobuf out-of-memory vulnerability Gerardo Di Giacomo 2019-05-14 19:34:21 -07:00
  • 4c3b28dbac Merge pull request #96 from RustSec/RUSTSEC-2019-0002 Tony Arcieri 2019-05-07 12:18:12 -07:00
  • f14a0d9738 Assign RUSTSEC-2019-0002 to slice-deque Tony Arcieri 2019-05-07 12:13:52 -07:00
  • 797320c42e Merge pull request #95 from gnzlbg/slice_deq2 Tony Arcieri 2019-05-07 12:11:51 -07:00
  • 7412cdbd7f Fix file name gnzlbg 2019-05-07 19:39:14 +02:00
  • 7de8dba6b5 Add advisory for slice-deque gnzlbg 2019-05-07 19:30:37 +02:00
  • ebc7ba3c40 Merge pull request #94 from RustSec/RUSTSEC-2019-0001 Tony Arcieri 2019-05-04 16:51:28 -07:00
  • 75a40b530a Assign RUSTSEC-2019-0001 to ammonia Tony Arcieri 2019-05-04 16:36:52 -07:00
  • 3c358f67c1 Merge pull request #93 from xfix/ammonia-advisory Tony Arcieri 2019-05-04 16:32:32 -07:00
  • aaf99ec45d Add advisory for ammonia Konrad Borowski 2019-04-28 15:06:27 +02:00
  • a8e2ec82ee Merge pull request #91 from RustSec/RUSTSEC-2018-0013 Tony Arcieri 2019-03-03 08:20:20 -08:00
  • bf5fbb02da Assign RUSTSEC-2018-0013 to safe-transmute Tony Arcieri 2019-03-03 08:15:26 -08:00
  • 6c769769c8 Merge pull request #89 from nabijaczleweli/master Tony Arcieri 2019-03-03 07:14:53 -08:00
  • b34dcfbeaf Optimisation in the wake of lack of docuemntation nabijaczleweli 2019-03-02 21:08:30 +01:00
  • 0eb9b4e364 Split affected_paths nabijaczleweli 2019-03-02 20:38:30 +01:00