RUSTSEC-2016-0005

Source
https://rustsec.org/advisories/RUSTSEC-2016-0005
Import Source
https://github.com/rustsec/advisory-db/blob/osv/crates/RUSTSEC-2016-0005.json
JSON Data
https://api.osv.dev/v1/vulns/RUSTSEC-2016-0005
Published
2016-09-06T12:00:00Z
Modified
2022-01-09T20:07:15Z
Summary
rust-crypto is unmaintained; switch to a modern alternative
Details

The rust-crypto crate has not seen a release or GitHub commit since 2016, and its author is unresponsive.

NOTE: The (old) rust-crypto crate (with hyphen) should not be confused with similarly named (new) RustCrypto GitHub Org (without hyphen). The GitHub Org is actively maintained.

We recommend you switch to one of the following crates instead, depending on which algorithms you need:

Database specific
{
    "license": "CC0-1.0"
}
References

Affected packages

crates.io / rust-crypto

Package

Name
rust-crypto
View open source insights on deps.dev
Purl
pkg:cargo/rust-crypto

Affected ranges

Type
SEMVER
Events
Introduced
0.0.0-0
Fixed
0.2.37-0

Ecosystem specific

{
    "affected_functions": null,
    "affects": {
        "arch": [],
        "functions": [],
        "os": []
    }
}

Database specific

categories
[]
cvss
null
informational
"unmaintained"
source
"https://github.com/rustsec/advisory-db/blob/osv/crates/RUSTSEC-2016-0005.json"