Skip to content
This repository was archived by the owner on Apr 8, 2022. It is now read-only.
This repository was archived by the owner on Apr 8, 2022. It is now read-only.

Cargo audit security advisories #79

@muursh

Description

@muursh

chrono - 0.4.19 - segfault in localtime_r - no safe upgrade
time - 0.1.44 - segfault in time crate - upgrade to >=0.2.23
wasmtime - 0.27.0 - multiple vulnerabilities - upgrade to >=0.30.0
zeroize_derive - 1.1.0 - doesn't implement drop for enum - upgrade to >= 1.1.1

net2 is unmaintained :(

The above is true in staging as of 22/10/21. I have no idea if anyone is changing any of the above in anything they're working on. If anyone is can they comment here and let me know.

I'll create a PR to fix the obvious ones.

We need to decide what to do about net2 given it's not maintained anymore. Do we wait for parity or should we be more proactive?

Metadata

Metadata

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions