From d164d1058f24efc7b8f4f8012b55aeaa3260faa8 Mon Sep 17 00:00:00 2001 From: Jon C Date: Thu, 20 Jun 2024 14:14:00 +0200 Subject: [PATCH] audit: Add curve25519-dalek RUSTSEC to ignore list (#6889) #### Problem Just like https://github.com/anza-xyz/agave/pull/1786, SPL is failing the audit check in CI. #### Solution Until we can upgrade to curve25519-dalek v4, ignore it --- ci/do-audit.sh | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/ci/do-audit.sh b/ci/do-audit.sh index f86ef5c8236..74631550c63 100755 --- a/ci/do-audit.sh +++ b/ci/do-audit.sh @@ -30,5 +30,10 @@ cargo_audit_ignores=( # # Remove once SPL upgrades to Solana v1.17 or greater --ignore RUSTSEC-2023-0065 + + # curve25519-dalek + # + # Remove once SPL upgrades to curve25519-dalek v4 + --ignore RUSTSEC-2024-0344 ) cargo +"$rust_stable" audit "${cargo_audit_ignores[@]}"