Lancern's Treasure Chest
08:38 · Aug 4, 2023 · Fri
https://fxtwitter.com/rustlang/status/1687073158057070592
FixTweet
Rust Language (@rustlang)
A security issue has been found in Cargo: on Unix platforms, the umask was ignored when extracting dependencies, potentially allowing other local users to inject malicious code. (CVE-2023-38497)
Rust 1.71.1 will be released later today with the fix.
ht…
Home
Powered by
BroadcastChannel
&
Sepia