Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Cargo Audit #740

Open
ghost opened this issue Dec 24, 2021 · 0 comments
Open

Cargo Audit #740

ghost opened this issue Dec 24, 2021 · 0 comments
Labels
tracking tracking issues help to list stuff of a particular topic

Comments

@ghost
Copy link

ghost commented Dec 24, 2021

Vulnerabilities

Id Package Title Date
RUSTSEC-2021-0078 hyper Lenient hyper header parsing of Content-Length could allow request smuggling 2021-07-07
RUSTSEC-2021-0079 hyper Integer overflow in hyper's parsing of the Transfer-Encoding header leads to data loss 2021-07-07
RUSTSEC-2021-0076 libsecp256k1 libsecp256k1 allows overflowing signatures 2021-07-13
RUSTSEC-2021-0130 lru Use after free in lru crate 2021-12-21
RUSTSEC-2021-0073 prost-types Conversion from prost_types::Timestamp to SystemTime can cause an overflow and panic 2021-07-08
RUSTSEC-2018-0005 serde_yaml Uncontrolled recursion leads to abort in deserialization 2018-09-17
RUSTSEC-2022-0006 thread_local Data race in Iter and IterMut 2022-01-23
RUSTSEC-2020-0071 time Potential segfault in the time crate 2020-11-18
@Fraccaman Fraccaman added the tracking tracking issues help to list stuff of a particular topic label Dec 24, 2021
@sync-by-unito sync-by-unito bot closed this as completed Feb 3, 2022
@juped juped reopened this Feb 3, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
tracking tracking issues help to list stuff of a particular topic
Projects
No open projects
Status: Todo
Development

No branches or pull requests

2 participants