-
Notifications
You must be signed in to change notification settings - Fork 87
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
build: niv advisory-db: update dd7d3d72 -> 97388358 #2030
Merged
mergify
merged 1 commit into
master
from
update/advisory-db-dd7d3d726a862a1eccf8d8a40c41f8eeafc69243
Feb 15, 2022
Merged
build: niv advisory-db: update dd7d3d72 -> 97388358 #2030
mergify
merged 1 commit into
master
from
update/advisory-db-dd7d3d726a862a1eccf8d8a40c41f8eeafc69243
Feb 15, 2022
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
## Changelog for advisory-db: Branch: main Commits: [rustsec/advisory-db@dd7d3d72...97388358](rustsec/advisory-db@dd7d3d7...9738835) * [`3952f343`](rustsec/advisory-db@3952f34) Mark arrow advisories as fixed in apache/arrow-rs#817 ([RustSec/advisory-db#1131](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1131)) * [`7f0874b5`](rustsec/advisory-db@7f0874b) Mark cargo-download unmaintained ([RustSec/advisory-db#1132](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1132)) * [`1ea676a6`](rustsec/advisory-db@1ea676a) Assigned RUSTSEC-2021-0133 to cargo-download ([RustSec/advisory-db#1133](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1133)) * [`a20a779b`](rustsec/advisory-db@a20a779) Turn the issue about shamir into an advisory ([RustSec/advisory-db#1134](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1134)) * [`de2da259`](rustsec/advisory-db@de2da25) Assigned RUSTSEC-2020-0160 to shamir ([RustSec/advisory-db#1135](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1135)) * [`2b51ce82`](rustsec/advisory-db@2b51ce8) Report that rental is no longer maintained ([RustSec/advisory-db#1136](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1136)) * [`dcf8fb2a`](rustsec/advisory-db@dcf8fb2) Assigned RUSTSEC-2021-0134 to rental ([RustSec/advisory-db#1137](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1137)) * [`0bc31953`](rustsec/advisory-db@0bc3195) Add unmaintained advisory for lmdb ([RustSec/advisory-db#1142](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1142)) * [`9997408c`](rustsec/advisory-db@9997408) Assigned RUSTSEC-2022-0001 to lmdb ([RustSec/advisory-db#1143](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1143)) * [`97798466`](rustsec/advisory-db@9779846) README.md: bump maintained date * [`14b4f228`](rustsec/advisory-db@14b4f22) RUSTSEC-2016-0015: remove `sodiumoxide` recommendation ([RustSec/advisory-db#1145](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1145)) * [`61d8acaf`](rustsec/advisory-db@61d8aca) Undefined behavior in `dashmap` ([RustSec/advisory-db#1146](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1146)) * [`36e44b1f`](rustsec/advisory-db@36e44b1) Assigned RUSTSEC-2022-0002 to dashmap ([RustSec/advisory-db#1148](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1148)) * [`2e646db5`](rustsec/advisory-db@2e646db) Add CVE to RUSTSEC-2021-0124 ([RustSec/advisory-db#1149](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1149)) * [`770c8cad`](rustsec/advisory-db@770c8ca) Add rust-ammonia/ammonia[RustSec/advisory-db#147](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/147) ([RustSec/advisory-db#1152](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1152)) * [`bf972ed7`](rustsec/advisory-db@bf972ed) Assigned RUSTSEC-2022-0003 to ammonia ([RustSec/advisory-db#1153](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1153)) * [`aad861dd`](rustsec/advisory-db@aad861d) Add advisory for CVE-2022-21658 ([RustSec/advisory-db#1155](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1155)) * [`d4c65da0`](rustsec/advisory-db@d4c65da) Correct year for CVE-2022-21658 ([RustSec/advisory-db#1157](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1157)) * [`ff5b4456`](rustsec/advisory-db@ff5b445) Add advisory for tower-http[RustSec/advisory-db#204](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/204) ([RustSec/advisory-db#1159](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1159)) * [`3e8ee098`](rustsec/advisory-db@3e8ee09) Assigned RUSTSEC-2021-0135 to tower-http ([RustSec/advisory-db#1160](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1160)) * [`b0dce59b`](rustsec/advisory-db@b0dce59) Fix version specification in CVE-2022-21658 ([RustSec/advisory-db#1161](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1161)) * [`d1235dbb`](rustsec/advisory-db@d1235db) Add advisory for array-macro ([RustSec/advisory-db#1162](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1162)) * [`258329ba`](rustsec/advisory-db@258329b) Assigned RUSTSEC-2020-0161 to array-macro ([RustSec/advisory-db#1163](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1163)) * [`3e6d7719`](rustsec/advisory-db@3e6d771) Add advisory for rustc_serialize ([RustSec/advisory-db#1140](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1140)) * [`5a24458f`](rustsec/advisory-db@5a24458) Assigned RUSTSEC-2022-0004 to rustc-serialize ([RustSec/advisory-db#1164](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1164)) * [`190dfb9d`](rustsec/advisory-db@190dfb9) Update which tower-http versions are affected by RUSTSEC-2021-0135 ([RustSec/advisory-db#1166](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1166)) * [`e8f33f7e`](rustsec/advisory-db@e8f33f7) Add unmaintained crate advisory for `ftd2xx-embedded-hal` ([RustSec/advisory-db#1167](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1167)) * [`0ca65bbd`](rustsec/advisory-db@0ca65bb) Assigned RUSTSEC-2022-0005 to ftd2xx-embedded-hal ([RustSec/advisory-db#1168](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1168)) * [`1ecfb4a3`](rustsec/advisory-db@1ecfb4a) Add advisory for Amanieu/thread_local-rs[RustSec/advisory-db#33](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/33) ([RustSec/advisory-db#1169](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1169)) * [`9839c6ee`](rustsec/advisory-db@9839c6e) Assigned RUSTSEC-2022-0006 to thread_local ([RustSec/advisory-db#1170](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1170)) * [`3c8a9dc3`](rustsec/advisory-db@3c8a9dc) Add qcell crate advisory ([RustSec/advisory-db#1171](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1171)) * [`9da1eb7e`](rustsec/advisory-db@9da1eb7) Assigned RUSTSEC-2022-0007 to qcell ([RustSec/advisory-db#1172](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1172)) * [`989da550`](rustsec/advisory-db@989da55) Add advisory for windows ([RustSec/advisory-db#1177](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1177)) * [`c9a98f3b`](rustsec/advisory-db@c9a98f3) Assigned RUSTSEC-2022-0008 to windows ([RustSec/advisory-db#1178](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1178)) * [`b2a864d3`](rustsec/advisory-db@b2a864d) Add patched version to DashMap advisory ([RustSec/advisory-db#1181](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1181)) * [`ec4cc26a`](rustsec/advisory-db@ec4cc26) Add entry for libp2p-core vulnerability ([RustSec/advisory-db#1182](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1182)) * [`8f550f12`](rustsec/advisory-db@8f550f1) Assigned RUSTSEC-2022-0009 to libp2p-core ([RustSec/advisory-db#1183](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1183)) * [`ff3a5264`](rustsec/advisory-db@ff3a526) Mark tokio-proto as deprecated ([RustSec/advisory-db#1184](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1184)) * [`17946d71`](rustsec/advisory-db@17946d7) Assigned RUSTSEC-2020-0162 to tokio-proto ([RustSec/advisory-db#1185](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1185)) * [`90790107`](rustsec/advisory-db@9079010) Update RUSTSEC-2022-0009.md ([RustSec/advisory-db#1186](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1186)) * [`97388358`](rustsec/advisory-db@9738835) Suggest maintained alternatives for Rental advisory ([RustSec/advisory-db#1187](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1187))
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This bot trusts that bot
mergify
bot
deleted the
update/advisory-db-dd7d3d726a862a1eccf8d8a40c41f8eeafc69243
branch
February 15, 2022 16:38
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Changelog for advisory-db:
Branch: main
Commits: RustSec/[email protected]
3952f343
Mark arrow advisories as fixed in Validate arguments to ArrayData::try_new() apache/arrow-rs#817 (RustSec/advisory-db#1131)7f0874b5
Mark cargo-download unmaintained (RustSec/advisory-db#1132)1ea676a6
Assigned RUSTSEC-2021-0133 to cargo-download (RustSec/advisory-db#1133)a20a779b
Turn the issue about shamir into an advisory (RustSec/advisory-db#1134)de2da259
Assigned RUSTSEC-2020-0160 to shamir (RustSec/advisory-db#1135)2b51ce82
Report that rental is no longer maintained (RustSec/advisory-db#1136)dcf8fb2a
Assigned RUSTSEC-2021-0134 to rental (RustSec/advisory-db#1137)0bc31953
Add unmaintained advisory for lmdb (RustSec/advisory-db#1142)9997408c
Assigned RUSTSEC-2022-0001 to lmdb (RustSec/advisory-db#1143)97798466
README.md: bump maintained date14b4f228
RUSTSEC-2016-0015: removesodiumoxide
recommendation (RustSec/advisory-db#1145)61d8acaf
Undefined behavior indashmap
(RustSec/advisory-db#1146)36e44b1f
Assigned RUSTSEC-2022-0002 to dashmap (RustSec/advisory-db#1148)2e646db5
Add CVE to RUSTSEC-2021-0124 (RustSec/advisory-db#1149)770c8cad
Add rust-ammonia/ammoniaRustSec/advisory-db#147 (RustSec/advisory-db#1152)bf972ed7
Assigned RUSTSEC-2022-0003 to ammonia (RustSec/advisory-db#1153)aad861dd
Add advisory for CVE-2022-21658 (RustSec/advisory-db#1155)d4c65da0
Correct year for CVE-2022-21658 (RustSec/advisory-db#1157)ff5b4456
Add advisory for tower-httpRustSec/advisory-db#204 (RustSec/advisory-db#1159)3e8ee098
Assigned RUSTSEC-2021-0135 to tower-http (RustSec/advisory-db#1160)b0dce59b
Fix version specification in CVE-2022-21658 (RustSec/advisory-db#1161)d1235dbb
Add advisory for array-macro (RustSec/advisory-db#1162)258329ba
Assigned RUSTSEC-2020-0161 to array-macro (RustSec/advisory-db#1163)3e6d7719
Add advisory for rustc_serialize (RustSec/advisory-db#1140)5a24458f
Assigned RUSTSEC-2022-0004 to rustc-serialize (RustSec/advisory-db#1164)190dfb9d
Update which tower-http versions are affected by RUSTSEC-2021-0135 (RustSec/advisory-db#1166)e8f33f7e
Add unmaintained crate advisory forftd2xx-embedded-hal
(RustSec/advisory-db#1167)0ca65bbd
Assigned RUSTSEC-2022-0005 to ftd2xx-embedded-hal (RustSec/advisory-db#1168)1ecfb4a3
Add advisory for Amanieu/thread_local-rsRustSec/advisory-db#33 (RustSec/advisory-db#1169)9839c6ee
Assigned RUSTSEC-2022-0006 to thread_local (RustSec/advisory-db#1170)3c8a9dc3
Add qcell crate advisory (RustSec/advisory-db#1171)9da1eb7e
Assigned RUSTSEC-2022-0007 to qcell (RustSec/advisory-db#1172)989da550
Add advisory for windows (RustSec/advisory-db#1177)c9a98f3b
Assigned RUSTSEC-2022-0008 to windows (RustSec/advisory-db#1178)b2a864d3
Add patched version to DashMap advisory (RustSec/advisory-db#1181)ec4cc26a
Add entry for libp2p-core vulnerability (RustSec/advisory-db#1182)8f550f12
Assigned RUSTSEC-2022-0009 to libp2p-core (RustSec/advisory-db#1183)ff3a5264
Mark tokio-proto as deprecated (RustSec/advisory-db#1184)17946d71
Assigned RUSTSEC-2020-0162 to tokio-proto (RustSec/advisory-db#1185)90790107
Update RUSTSEC-2022-0009.md (RustSec/advisory-db#1186)97388358
Suggest maintained alternatives for Rental advisory (RustSec/advisory-db#1187)