Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Patch ASA-0024-0012 and 0013 on v7.x compatible branch. #62

Conversation

vincentwschau
Copy link

Cherry pick in cosmos@ba7ac45 to patch security issues in advisories ASA-2024-0012 and ASA-2024-0013 (details).

* Limit recursion depth for unknown field detection

(cherry picked from commit f038dc731c55be1e1c526e67695acc358631afd6)

* Limit unpack any

(cherry picked from commit 1a2bff56fb7391f9ce87d4fbe9e0367ae991c0b2)

* Update Changelog

* Another limit recursion depth for unknown field detection

* Update changelog
Copy link

@vincentwschau your pull request is missing a changelog!

@vincentwschau vincentwschau merged commit 93be52f into dydx-fork-v0.50.5-patch-2024-0012 Dec 19, 2024
35 of 36 checks passed
@vincentwschau vincentwschau deleted the vincentc/v7.x-compatible-asa-2024-0012-patch branch December 19, 2024 21:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Development

Successfully merging this pull request may close these issues.

3 participants