Skip to content

Security1 #216

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 9 commits into from
Jun 10, 2022
Merged

Security1 #216

merged 9 commits into from
Jun 10, 2022

Conversation

locka99
Copy link
Owner

@locka99 locka99 commented Jun 10, 2022

Fixes for potential security issues #211 & #212 - excessive chunks & decoding recursion checks on variants / extension objects

@locka99 locka99 merged commit 9fad97a into master Jun 10, 2022
locka99 added a commit that referenced this pull request Jun 10, 2022
This reverts commit 9fad97a.
locka99 added a commit that referenced this pull request Jun 10, 2022
Fixes for potential security issues #211 & #210 - excessive chunks & nested decoding checks on variants / extension objects
thedanielhanke added a commit to re-gmbh/opcua that referenced this pull request Jun 28, 2022
* mainline/master: (116 commits)
  Simplify some functions by implementing From trait.
  Move more async code into session state
  Give slightly better panic message
  Fix compiler warning
  Cleanup import
  Work in progress
  Add a default impl for CertificateValidation
  Allow certificates to look up IP addresses from computer name when generated. Sample key pair set to do this.
  Add some troubleshooting notes when using demo server for testing
  Fix unused var warning
  Add a depth test for decoding nested variants
  Security1 (locka99#216)
  Revert "Security1 (locka99#216)"
  Security1 (locka99#216)
  Bump regex from 1.5.4 to 1.5.5 (locka99#215)
  Bump openssl-src from 111.17.0+1.1.1m to 111.20.0+1.1.1o (locka99#214)
  Move session manager up to server level so sessions are transferrable. Also some enforcement of some but not all activation rules.
  Fix log4rs.yaml and upgrade crate at same time
  Create SECURITY.md
  Some documentation updates
  ...
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant