<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/osv_rustsec/10</id>
  <title>Most recent entries from osv_rustsec</title>
  <updated>2026-10-02T08:50:14.080819+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2016-0004</id>
    <title>RUSTSEC-2016-0004 — libusb is unmaintained; use rusb instead</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: libusb</p>
<p>The `libusb` crate has not seen a release since September 2016, and its author
is unresponsive.</p>
<p>The `rusb` crate is a maintained fork:</p>
<p>https://github.com/a1ien/rusb</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2016-0004"/>
    <published>2016-09-10T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2016-0006</id>
    <title>RUSTSEC-2016-0006 — `cassandra` crate is unmaintained; use `cassandra-cpp` instead</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: cassandra</p>
<p>The `cassandra` crate has not seen a release since December 2016, and its author
is unresponsive.</p>
<p>The `cassandra-cpp` crate is a maintained fork:</p>
<p>https://github.com/Metaswitch/cassandra-rs</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2016-0006"/>
    <published>2016-12-15T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2017-0007</id>
    <title>RUSTSEC-2017-0007 — lz4-compress is unmaintained</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: lz4-compress</p>
<p>[According to the developers](https://gitlab.redox-os.org/redox-os/tfs/issues/89) this crate is no longer maintained.</p>
<p>The suggested alternative is [`lz4-compression`](https://crates.io/crates/lz4-compression), a maintained fork of `lz4-compress`.</p>
<p>See also [lz-fear](https://crates.io/crates/lz-fear) which is compatible with the reference LZ4 implementation in C, but not with lz4-compress.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2017-0007"/>
    <published>2017-04-17T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2018-0014</id>
    <title>RUSTSEC-2018-0014 — chan is end-of-life; use crossbeam-channel instead</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: chan</p>
<p>**`chan` has reached its end-of-life and is now deprecated.**</p>
<p>The intended successor of this crate is
[`crossbeam-channel`](https://github.com/crossbeam-rs/crossbeam/tree/master/crossbeam-channel).
Its API is strikingly similar, but comes with a much better `select!` macro,
better performance, a better test suite and an all-around better
implementation.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2018-0014"/>
    <published>2018-07-31T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2018-0015</id>
    <title>RUSTSEC-2018-0015 — term is looking for a new maintainer</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: term</p>
<p>The author of the `term` crate does not have time to maintain it and is looking
for a new maintainer.</p>
<p>Some maintained alternatives you can potentially switch to instead, depending
on your needs:</p>
<p>- [`crossterm`](https://github.com/crossterm-rs/crossterm)
- [`termcolor`](https://crates.io/crates/termcolor)
- [`yansi`](https://crates.io/crates/yansi)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2018-0015"/>
    <published>2018-11-19T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2018-0016</id>
    <title>RUSTSEC-2018-0016 — quickersort is deprecated and unmaintained</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: quickersort</p>
<p>The author of the `quickersort` crate has deprecated it and does not recommend using it anymore.</p>
<p>Everything in it has been incorporated into [std::sort_unstable] in the standard library as of Rust 1.20.</p>
<p>[std::sort_unstable]: https://doc.rust-lang.org/stable/std/primitive.slice.html#method.sort_unstable</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2018-0016"/>
    <published>2018-06-30T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2018-0017</id>
    <title>RUSTSEC-2018-0017 — `tempdir` crate has been deprecated; use `tempfile` instead</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: tempdir</p>
<p>The [`tempdir`](https://crates.io/crates/tempdir) crate has been deprecated
and the functionality is merged into [`tempfile`](https://crates.io/crates/tempfile).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2018-0017"/>
    <published>2018-02-13T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2019-0032</id>
    <title>RUSTSEC-2019-0032 — crust repo has been archived; use libp2p instead</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: crust</p>
<p>** The `crust` crate repo was archived with no warning or explanation.**</p>
<p>Given that it was archived with no warning or successor, there's not an
official replacement but [`rust-libp2p`](https://github.com/libp2p/rust-libp2p)
looks like it's got a similar feature set and is actively maintained.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2019-0032"/>
    <published>2019-11-21T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2020-0003</id>
    <title>RUSTSEC-2020-0003 — rust_sodium is unmaintained; switch to a modern alternative</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: rust_sodium</p>
<p>The `rust_sodium` crate is no longer maintained by its current owner, who
advise in the repository readme that they are looking for
someone else to take ownership of it.</p>
<p>We recommend you switch to an alternative crate such as:
- [`sodiumoxide`](https://crates.io/crates/sodiumoxide)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2020-0003"/>
    <published>2020-01-20T12:00:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2020-0010</id>
    <title>RUSTSEC-2020-0010 — tiberius is unmaintained</title>
    <updated>2020-10-02T01:29:11+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: tiberius</p>
<p>The author of `tiberius` has archived the GitHub repository and left the
following note:</p>
<p>&gt; I do not have the time to overhaul the library and do not intend to further
&gt; maintain the 0.3 version relying on the old futures ecosystem.</p>
<p>Suggested alternatives are:</p>
<p>- [`odbc`](https://crates.io/crates/odbc)
- [`sqlx`](https://github.com/launchbadge/sqlx/issues/116) (forthcoming)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2020-0010"/>
    <published>2020-02-28T12:00:00+00:00</published>
  </entry>
</feed>
