From c42339040c2969d2f3ab8342b0cfe824c2103f59 Mon Sep 17 00:00:00 2001 From: David Knaack Date: Sat, 11 Jun 2022 23:39:52 +0200 Subject: [PATCH] chore(audit): add back `RUSTSEC-2020-0071` & `RUSTSEC-2020-0159` to ignore list (#4057) This reverts commit b1ad1c79f53fcc27373cd6128191a867b50fb579. --- .cargo/audit.toml | 11 +++++++++++ 1 file changed, 11 insertions(+) create mode 100644 .cargo/audit.toml diff --git a/.cargo/audit.toml b/.cargo/audit.toml new file mode 100644 index 00000000..5dbd178b --- /dev/null +++ b/.cargo/audit.toml @@ -0,0 +1,11 @@ +[advisories] +ignore = [ + # Potential segfault in the time crate + # chrono dependency, but vulnerable function is never called + # Tacked in #3163 + "RUSTSEC-2020-0071", + # chrono: Potential segfault in localtime_r invocations + # starship avoids setting any environment variables to avoid this issue + # Tracked in #3166 + "RUSTSEC-2020-0159", +]