This project contains known security vulnerabilities. Find detailed information at the bottom.

Crate starling

Dependencies

(26 total, 16 outdated, 1 insecure)

CrateRequiredLatestStatus
 bincode^1.3.33.0.0out of date
 blake2-rfc^0.2.180.2.18up to date
 serde^1.0.1381.0.229up to date
 serde_json^1.0.821.0.151up to date
 ciborium^0.2.00.2.2up to date
 serde_yaml^0.8.240.9.34+deprecatedout of date
 serde-pickle^1.1.11.2.0up to date
 ron^0.7.10.12.2out of date
 groestl^0.10.10.11.0out of date
 openssl^0.10.400.10.81up to date
 tiny-keccak^2.0.22.0.2up to date
 hashbrown^0.12.10.17.1out of date
 rocksdb ⚠️^0.18.00.25.0insecure
 seahash^4.1.04.1.0up to date
 fxhash^0.2.10.2.1up to date
 rand^0.8.50.10.3out of date
 digest^0.10.30.11.3out of date
 blake2^0.10.40.11.0out of date
 md2^0.10.10.11.0out of date
 md4^0.10.10.11.0out of date
 md-5^0.10.10.11.0out of date
 ripemd^0.1.10.2.0out of date
 sha-1^0.10.00.10.1up to date
 sha2^0.10.20.11.0out of date
 sha3^0.10.10.12.0out of date
 whirlpool^0.10.10.11.0out of date

Dev dependencies

(2 total, 2 outdated)

CrateRequiredLatestStatus
 criterion^0.3.50.8.2out of date
 rand^0.8.50.10.3out of date

Security Vulnerabilities

rocksdb: Out-of-bounds read when opening multiple column families with TTL

RUSTSEC-2022-0046

Affected versions of this crate called the RocksDB C API rocksdb_open_column_families_with_ttl() with a pointer to a single integer TTL value, but one TTL value for each column family is expected.

This is only relevant when using rocksdb::DBWithThreadMode::open_cf_descriptors_with_ttl() with multiple column families.

This bug has been fixed in v0.19.0.