Skip to content

build: niv advisory-db: update 89b9e106 -> 42508228#1315

Merged
mergify[bot] merged 1 commit intomasterfrom
update/advisory-db-89b9e106319b52343e6c24828011eb43f0b3c856
Jan 20, 2021
Merged

build: niv advisory-db: update 89b9e106 -> 42508228#1315
mergify[bot] merged 1 commit intomasterfrom
update/advisory-db-89b9e106319b52343e6c24828011eb43f0b3c856

Conversation

@dfinity-bot
Copy link
Contributor

Changelog for advisory-db:

Branch: master
Commits: RustSec/advisory-db@89b9e106...42508228

  • 3a722f1f av-data: read from arbitrary address in safe API
  • bf2e0aae av-data bug fixed in release 0.3.0
  • 12c7b0b4 Assigned RUSTSEC-2021-0007 to av-data
  • ad82bc5d Add advisory for double-free in sys-info
  • a7caf206 Assigned RUSTSEC-2020-0100 to sys-info

## Changelog for advisory-db:
Branch: master
Commits: [rustsec/advisory-db@89b9e106...42508228](rustsec/advisory-db@89b9e10...4250822)

* [`3a722f1f`](rustsec/advisory-db@3a722f1) av-data: read from arbitrary address in safe API
* [`bf2e0aae`](rustsec/advisory-db@bf2e0aa) av-data bug fixed in release 0.3.0
* [`12c7b0b4`](rustsec/advisory-db@12c7b0b) Assigned RUSTSEC-2021-0007 to av-data
* [`ad82bc5d`](rustsec/advisory-db@ad82bc5) Add advisory for double-free in sys-info
* [`a7caf206`](rustsec/advisory-db@a7caf20) Assigned RUSTSEC-2020-0100 to sys-info
Copy link
Contributor

@mergify mergify bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This bot trusts that bot

@mergify mergify bot merged commit cb8bcf6 into master Jan 20, 2021
@mergify mergify bot deleted the update/advisory-db-89b9e106319b52343e6c24828011eb43f0b3c856 branch January 20, 2021 16:33
dfinity-bot added a commit that referenced this pull request Aug 5, 2022
## Changelog for advisory-db:
Branch: main
Commits: [rustsec/advisory-db@f1c5d4de...d5c278e8](rustsec/advisory-db@f1c5d4d...d5c278e)

* [`6f3502cf`](rustsec/advisory-db@6f3502c) RUSTSEC-2020-0159 (chrono): add patched version ([RustSec/advisory-db⁠#1306](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1306))
* [`63f44b37`](rustsec/advisory-db@63f44b3) Adopt rust-admin 0.8.0 --skip-namecheck rustdecimal
* [`db78ca01`](rustsec/advisory-db@db78ca0) Revert "Adopt rust-admin 0.8.0 --skip-namecheck rustdecimal"
* [`d87417ae`](rustsec/advisory-db@d87417a) useless signed commit to fix toolign that expects signed commits
* [`163b8224`](rustsec/advisory-db@163b822) Bump rust-admin 0.8.0 --skip-namecheck rustdecimal ([RustSec/advisory-db⁠#1308](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1308))
* [`36705ccc`](rustsec/advisory-db@36705cc) RUSTSEC-2020-0159: remove "withdrawn" ([RustSec/advisory-db⁠#1310](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1310))
* [`52cb9759`](rustsec/advisory-db@52cb975) Add advisory rustdecimal ([RustSec/advisory-db⁠#1312](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1312))
* [`25925792`](rustsec/advisory-db@2592579) Revert "Add advisory rustdecimal ([RustSec/advisory-db⁠#1312](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1312))" ([RustSec/advisory-db⁠#1313](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1313))
* [`a6e02042`](rustsec/advisory-db@a6e0204) Remove redundant lint check from assign-ids ([RustSec/advisory-db⁠#1315](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1315))
* [`4f53bcba`](rustsec/advisory-db@4f53bcb) Add malicious crate rustdecimal ([RustSec/advisory-db⁠#1317](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1317))
* [`0db59724`](rustsec/advisory-db@0db5972) Assigned RUSTSEC-2022-0042 to rustdecimal ([RustSec/advisory-db⁠#1318](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1318))
* [`2827f80a`](rustsec/advisory-db@2827f80) Add tower-http 2022 version ([RustSec/advisory-db⁠#1320](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1320))
* [`cfdc0146`](rustsec/advisory-db@cfdc014) Assigned RUSTSEC-2022-0043 to tower-http ([RustSec/advisory-db⁠#1321](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1321))
* [`bd305025`](rustsec/advisory-db@bd30502) Move tower-http out from year 2021 ([RustSec/advisory-db⁠#1319](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1319))
* [`d5c278e8`](rustsec/advisory-db@d5c278e) Elaborate on `informational="unsound"` ([RustSec/advisory-db⁠#1322](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1322))
mergify bot pushed a commit that referenced this pull request Aug 5, 2022
## Changelog for advisory-db:
Branch: main
Commits: [rustsec/advisory-db@f1c5d4de...d5c278e8](rustsec/advisory-db@f1c5d4d...d5c278e)

* [`6f3502cf`](rustsec/advisory-db@6f3502c) RUSTSEC-2020-0159 (chrono): add patched version ([RustSec/advisory-db⁠#1306](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1306))
* [`63f44b37`](rustsec/advisory-db@63f44b3) Adopt rust-admin 0.8.0 --skip-namecheck rustdecimal
* [`db78ca01`](rustsec/advisory-db@db78ca0) Revert "Adopt rust-admin 0.8.0 --skip-namecheck rustdecimal"
* [`d87417ae`](rustsec/advisory-db@d87417a) useless signed commit to fix toolign that expects signed commits
* [`163b8224`](rustsec/advisory-db@163b822) Bump rust-admin 0.8.0 --skip-namecheck rustdecimal ([RustSec/advisory-db⁠#1308](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1308))
* [`36705ccc`](rustsec/advisory-db@36705cc) RUSTSEC-2020-0159: remove "withdrawn" ([RustSec/advisory-db⁠#1310](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1310))
* [`52cb9759`](rustsec/advisory-db@52cb975) Add advisory rustdecimal ([RustSec/advisory-db⁠#1312](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1312))
* [`25925792`](rustsec/advisory-db@2592579) Revert "Add advisory rustdecimal ([RustSec/advisory-db⁠#1312](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1312))" ([RustSec/advisory-db⁠#1313](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1313))
* [`a6e02042`](rustsec/advisory-db@a6e0204) Remove redundant lint check from assign-ids ([RustSec/advisory-db⁠#1315](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1315))
* [`4f53bcba`](rustsec/advisory-db@4f53bcb) Add malicious crate rustdecimal ([RustSec/advisory-db⁠#1317](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1317))
* [`0db59724`](rustsec/advisory-db@0db5972) Assigned RUSTSEC-2022-0042 to rustdecimal ([RustSec/advisory-db⁠#1318](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1318))
* [`2827f80a`](rustsec/advisory-db@2827f80) Add tower-http 2022 version ([RustSec/advisory-db⁠#1320](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1320))
* [`cfdc0146`](rustsec/advisory-db@cfdc014) Assigned RUSTSEC-2022-0043 to tower-http ([RustSec/advisory-db⁠#1321](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1321))
* [`bd305025`](rustsec/advisory-db@bd30502) Move tower-http out from year 2021 ([RustSec/advisory-db⁠#1319](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1319))
* [`d5c278e8`](rustsec/advisory-db@d5c278e) Elaborate on `informational="unsound"` ([RustSec/advisory-db⁠#1322](http://r.duckduckgo.com/l/?uddg=https://github.com/RustSec/advisory-db/issues/1322))
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant