Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[GHSA-mfm6-r9g2-q4r7] 111.20.0 fixed version for openssl-src 111 #412

Conversation

pinkforest
Copy link

Further to #405

We today updated RUSTSEC-2022-0025,26,27 to reflect the reality for openssl-src :
rustsec/advisory-db#1263

This advisory was missing release path fixed version for openssl-src 111 release stream
Currently dependabot is asking to switch 300 release stream which is incorrect advice as there are two separate streams

@github-actions github-actions bot changed the base branch from main to pinkforest/advisory-improvement-412 June 17, 2022 16:09
@pinkforest pinkforest changed the title [GHSA-mfm6-r9g2-q4r7.json] 111.20.0 fixed version for openssl-src 111 [GHSA-mfm6-r9g2-q4r7] 111.20.0 fixed version for openssl-src 111 Jun 17, 2022
@advisory-database advisory-database bot merged commit 021ebed into github:pinkforest/advisory-improvement-412 Jun 17, 2022
@advisory-database
Copy link
Contributor

Hi @pinkforest! Thank you so much for contributing to the GitHub Advisory Database. This database is free, open, and accessible to all, and it's people like you who make it great. Thanks for choosing to help others. We hope you send in more contributions in the future!

@pinkforest pinkforest deleted the pinkforest-GHSA-mfm6-r9g2-q4r7 branch June 20, 2022 15:12
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant