This project contains known security vulnerabilities. Find detailed information at the bottom.

Crate kube-client

Dependencies

(33 total, 20 outdated, 1 insecure)

CrateRequiredLatestStatus
 base64^0.13.00.23.1out of date
 bytes^1.1.01.12.1up to date
 chrono^0.4.190.4.45up to date
 dirs-next^2.0.02.0.0up to date
 either^1.6.11.18.0up to date
 futures^0.3.170.3.34up to date
 http^0.2.51.5.0out of date
 http-body^0.4.21.1.0out of date
 hyper^0.14.131.11.1out of date
 hyper-openssl^0.9.20.10.2out of date
 hyper-rustls^0.23.00.27.10out of date
 hyper-timeout^0.4.10.5.2out of date
 jsonpath_lib^0.3.00.3.0up to date
 k8s-openapi^0.16.00.28.0out of date
 kube-core=0.76.04.2.0out of date
 openssl^0.10.360.10.81up to date
 pem^1.0.14.0.0out of date
 pin-project^1.0.41.1.13up to date
 rand^0.8.30.10.3out of date
 rustls ⚠️^0.20.30.23.45insecure
 rustls-pemfile^1.0.02.2.0out of date
 secrecy^0.8.00.10.3out of date
 serde^1.0.1301.0.229up to date
 serde_json^1.0.681.0.151up to date
 serde_yaml^0.8.210.9.34+deprecatedout of date
 tame-oauth^0.7.00.10.0out of date
 thiserror^1.0.292.0.21out of date
 tokio^1.14.01.53.1up to date
 tokio-tungstenite^0.17.10.30.0out of date
 tokio-util^0.7.00.7.19up to date
 tower^0.4.60.5.3out of date
 tower-http^0.3.20.7.1out of date
 tracing^0.1.290.1.44up to date

Dev dependencies

(7 total, 3 outdated)

CrateRequiredLatestStatus
 k8s-openapi^0.16.00.28.0out of date
 kube<1.0.0, >=0.61.04.2.0out of date
 schemars^0.8.61.2.2out of date
 tempfile^3.1.03.27.0up to date
 tokio^1.14.01.53.1up to date
 tokio-test^0.4.00.4.6up to date
 tower-test^0.4.00.4.0up to date

Security Vulnerabilities

rustls: `rustls::ConnectionCommon::complete_io` could fall into an infinite loop based on network input

RUSTSEC-2024-0336

If a close_notify alert is received during a handshake, complete_io does not terminate.

Callers which do not call complete_io are not affected.

rustls-tokio and rustls-ffi do not call complete_io and are not affected.

rustls::Stream and rustls::StreamOwned types use complete_io and are affected.