-
Notifications
You must be signed in to change notification settings - Fork 1.3k
Closed
Labels
Description
ID: RUSTSEC-2020-0002
Crate: prost
Version: 0.5.0
Date: 2020-01-16
URL: https://rustsec.org/advisories/RUSTSEC-2020-0002
Title: Parsing a specially crafted message can result in a stack overflow
Solution: upgrade to >= 0.6.1
Dependency tree:
prost 0.5.0
The proxy has dependencies on prost 0.5, as does proxy-api, and tower-grpc-build, etc.
Is it feasible to update this dependency?
Reactions are currently unavailable