panic-attack estate sweep — Track C tracking issue
panic-attack assail flagged the findings below in this repo on 2026-05-26. They are aggregated here for human triage rather than as individual PRs because each requires judgement (supply-chain pin choice, schema-design call, mutation-test gap, etc.).
PA001/PA007 UnsafeCode/UnsafeFFI findings are NOT in this list — those are being handled via classification PR #62 (Track A). Findings already suppressed in audits/assail-classifications.a2ml are also excluded.
Estate tracker: hyperpolymath/panic-attack#32.
SupplyChain (1 findings)
file:line list
### `UnboundedAllocation` (12 findings)
file:line list
Critical container-stack/vordr/src/rust/cli/compose.rs:? Potential unbounded allocation pattern detected in container-stack/vordr/src/rust/cli/compose.rs
Critical container-stack/vordr/src/rust/network/netavark.rs:? Potential unbounded allocation pattern detected in container-stack/vordr/src/rust/network/netavark.rs
Critical container-stack/vordr/src/rust/ebpf/mod.rs:? Potential unbounded allocation pattern detected in container-stack/vordr/src/rust/ebpf/mod.rs
Critical container-stack/selur/compose/src/commands/create.rs:? Potential unbounded allocation pattern detected in container-stack/selur/compose/src/commands/create.rs
Critical container-stack/selur/compose/src/commands/up.rs:? Potential unbounded allocation pattern detected in container-stack/selur/compose/src/commands/up.rs
Critical container-stack/selur/compose/src/commands/run.rs:? Potential unbounded allocation pattern detected in container-stack/selur/compose/src/commands/run.rs
Critical container-stack/selur/compose/src/commands/scale.rs:? Potential unbounded allocation pattern detected in container-stack/selur/compose/src/commands/scale.rs
Critical container-stack/selur/compose/src/compose.rs:? Potential unbounded allocation pattern detected in container-stack/selur/compose/src/compose.rs
Critical container-stack/cerro-torre/src-rust/main.rs:? Potential unbounded allocation pattern detected in container-stack/cerro-torre/src-rust/main.rs
Critical verified-container-spec/implementations/containerd-shim/src/bundle.rs:? Potential unbounded allocation pattern detected in verified-container-spec/implementations/containerd-shim/src/bundle.rs
Critical verified-container-spec/implementations/containerd-shim/src/verify.rs:? Potential unbounded allocation pattern detected in verified-container-spec/implementations/containerd-shim/src/verify.rs
🤖 Discovered during the panic-attack estate sweep (2026-05-26). See hyperpolymath/panic-attack#32 for campaign tracker.
panic-attack estate sweep — Track C tracking issue
panic-attack assailflagged the findings below in this repo on 2026-05-26. They are aggregated here for human triage rather than as individual PRs because each requires judgement (supply-chain pin choice, schema-design call, mutation-test gap, etc.).PA001/PA007 UnsafeCode/UnsafeFFI findings are NOT in this list — those are being handled via classification PR #62 (Track A). Findings already suppressed in
audits/assail-classifications.a2mlare also excluded.Estate tracker: hyperpolymath/panic-attack#32.
SupplyChain(1 findings)file:line list
file:line list
🤖 Discovered during the panic-attack estate sweep (2026-05-26). See hyperpolymath/panic-attack#32 for campaign tracker.