VYPR

rpm package

suse/rust1.72&distro=SUSE Linux Enterprise Module for Development Tools 15 SP5

pkg:rpm/suse/rust1.72&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP5

Vulnerabilities (1)

  • CVE-2023-40030Aug 24, 2023
    affected < 1.72.0-150400.9.3.1fixed 1.72.0-150400.9.3.1

    Cargo downloads a Rust project’s dependencies and compiles the project. Starting in Rust 1.60.0 and prior to 1.72, Cargo did not escape Cargo feature names when including them in the report generated by `cargo build --timings`. A malicious package included as a dependency may inj