[Git][security-tracker-team/security-tracker][master] Add CVE-2020-35863/rust-hyper

Salvatore Bonaccorso carnil at debian.org
Fri Jan 1 09:50:09 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4c5cef11 by Salvatore Bonaccorso at 2021-01-01T10:49:50+01:00
Add CVE-2020-35863/rust-hyper

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -196,7 +196,9 @@ CVE-2020-35865 (An issue was discovered in the os_str_bytes crate before 2.0.0 f
 CVE-2020-35864 (An issue was discovered in the flatbuffers crate through 2020-04-11 fo ...)
 	NOT-FOR-US: flatbuffers rust crate
 CVE-2020-35863 (An issue was discovered in the hyper crate before 0.12.34 for Rust. HT ...)
-	TODO: check
+	- rust-hyper 0.12.35-1
+	NOTE: https://rustsec.org/advisories/RUSTSEC-2020-0008.html
+	NOTE: https://github.com/hyperium/hyper/issues/1925
 CVE-2020-35862 (An issue was discovered in the bitvec crate before 0.17.4 for Rust. Bi ...)
 	TODO: check
 CVE-2020-35861 (An issue was discovered in the bumpalo crate before 3.2.1 for Rust. Th ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4c5cef11f5268f95be39938cdd9ca1750a69996c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4c5cef11f5268f95be39938cdd9ca1750a69996c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210101/2912e60d/attachment.html>


More information about the debian-security-tracker-commits mailing list