rustsec / advisory-db

Security advisory database for Rust crates published through crates.io
https://rustsec.org
Other
892 stars 342 forks source link

File unmaintained advisory for `rsa-export` #1933

Closed aumetra closed 3 months ago

aumetra commented 3 months ago

I am the original author and sole owner of this crate on crates.io.
The source code is available on GitLab, as linked from the crate page.

I formally deprecated this crate 3-or-so years ago but there are surprisingly still users for it.

Considering the crate is unmaintained and the encoding is still done using variable time encodings, exposing the users to risks such as Util::Lookup, I've decided to finally file a RustSec advisory to hopefully get them to move.