RustSec (@rustsec) 's Twitter Profile
RustSec

@rustsec

Security advisory database for Rust crates published through crates.io. A project of the @rustsecurecode working group.

ID: 825185085515198464

linkhttps://rustsec.org calendar_today28-01-2017 03:33:50

148 Tweet

2,2K Takipçi

17 Takip Edilen

RustSec (@rustsec) 's Twitter Profile Photo

cargo-audit v0.12.0 is out with some minor fixes, including git2 crate updates which should make it easier to install: github.com/RustSec/cargo-…

RustSec (@rustsec) 's Twitter Profile Photo

We've posted a retrospective on RUSTSEC advisories filed in April 2020: - rusqlite - os_str_bytes - flatbuffers - fake-static - plutonium reddit.com/r/rust/comment…

Rust Language (@rustlang) 's Twitter Profile Photo

The Rust team was notified of a vulnerability affecting crates.io API tokens generation and storage, and out of aboundance of precaution we revoked all existing tokens. Learn more on the advisory: blog.rust-lang.org/2020/07/14/cra…

RustSec (@rustsec) 's Twitter Profile Photo

Introducing `auditable`: audit compiled Rust Language binaries against security advisories in the @RUSTSEC database: reddit.com/r/rust/comment…

Kate Catlin (@kate_catlin) 's Twitter Profile Photo

My team's first release since I joined GitHub is out today, and my first GitHub blog is live! Thanks so much to the RustSec community for collaborating to bring curated Rust security advisories to the GitHub Advisory Database! github.blog/2021-09-23-git…

Rust Language (@rustlang) 's Twitter Profile Photo

The std::fs::remove_dir_all function in the Rust standard library is vulnerable to a race condition (CVE-2022-21658). We will release Rust 1.58.1 with the fix later today. Read the advisory: blog.rust-lang.org/2022/01/20/cve…

Rust Language (@rustlang) 's Twitter Profile Photo

The regex crate is vulnerable to denial of service attacks when parsing untrusted regexes (CVE-2022-24713). We released version 1.5.5, fixing the issue. Read the advisory: blog.rust-lang.org/2022/03/08/cve…

Rust Language (@rustlang) 's Twitter Profile Photo

A malicious crate was uploaded to crates.io, targeting GitLab CI environments. Read more on the security advisory: blog.rust-lang.org/2022/05/10/mal…

GitHub (@github) 's Twitter Profile Photo

Rust is the fastest growing language on GitHub, and GitHub’s supply chain security features now help keep your Rust projects secure 🔒 github.co/3tiGH9E