Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
This update for rust, rust1.72 fixes the following issues:
Changes in rust:
* Update to version 1.72.0 - for details see the rust1.72 package
Changes in rust1.72:
* CVE-2023-40030: fix minor non-exploited issue in cargo (bsc#1214689)
# Version 1.72.0 (2023-08-24)
## Language
* Replace const eval limit by a lint and add an exponential backoff warning
* expand: Change how `#![cfg(FALSE)]` behaves on crate root
* Stabilize inline asm for LoongArch64
* Uplift `clippy::undropped_manually_drops` lint
* Uplift `clippy::invalid_utf8_in_unchecked` lint
* Uplift `clippy::cast_ref_to_mut` lint
* Uplift `clippy::cmp_nan` lint
* resolve: Remove artificial import ambiguity errors
* Don't require associated types with Self: Sized bounds in `dyn Trait`
objects
## Compiler
* Remember names of `cfg`-ed out items to mention them in diagnostics
* Support for native WASM exceptions
* Add support for NetBSD/aarch64-be (big-endian arm64).
* Write to stdout if `-`...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* openSUSE Leap 15.4
zypper in -t patch SUSE-2023-3722=1 openSUSE-SLE-15.4-2023-3722=1
* openSUSE Leap 15.5
zypper in -t patch openSUSE-SLE-15.5-2023-3722=1
* Development Tools Module 15-SP4
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP4-2023-3722=1
* Development Tools Module 15-SP5
zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP5-2023-3722=1
* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586)
* cargo1.72-1.72.0-150400.9.3.1
* cargo1.72-debuginfo-1.72.0-150400.9.3.1
* rust1.72-debuginfo-1.72.0-150400.9.3.1
* cargo-1.72.0-150400.24.24.1
* rust-1.72.0-150400.24.24.1
* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64 i586 nosrc)
* rust1.72-1.72.0-150400.9.3.1
* openSUSE Leap 15.4 (nosrc)
* rust1.72-test-1.72.0-150400.9.3.1
* openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64)
* cargo1.72-1.72.0-150400.9.3.1
* cargo1.72-debuginfo-1.72.0-150400.9.3.1
* rust1.72-debuginfo-1.72.0-150400.9.3.1
* cargo-1.72.0-150400.24.24.1
* rust-1.72.0-150400.24.24.1
* openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64 nosrc)
* rust1.72-1.72.0-150400.9.3.1
* Development Tools Module 15-SP4 (aarch64 ppc64le s390x x86_64)
* cargo1.72-1.72.0-150400.9.3.1
* cargo1.72-debuginfo-1.72.0-150400.9.3.1
* rust1.72-debuginfo-1.72.0-150400.9.3.1
* cargo-1.72.0-150400.24.24.1
* rust-1.72.0-150400.24.24.1
* Development Tools Module 15-SP4 (aarch64 ppc64le s390x x86_64 nosrc)
*...
Read the Full Advisory* #1214689
## References:
* https://www.suse.com/security/cve/CVE-2023-40030.html
* https://bugzilla.suse.com/show_bug.cgi?id=1214689
Get the latest Linux and open source security news straight to your inbox.