Merge pull request #19449 from geoffw0/alloc-size-sev

Rust: Update query severities
This commit is contained in:
Geoffrey White
2025-05-12 15:57:02 +01:00
committed by GitHub
3 changed files with 3 additions and 2 deletions

View File

@@ -14,6 +14,7 @@ ql/rust/ql/src/queries/security/CWE-311/CleartextTransmission.ql
ql/rust/ql/src/queries/security/CWE-312/CleartextLogging.ql
ql/rust/ql/src/queries/security/CWE-327/BrokenCryptoAlgorithm.ql
ql/rust/ql/src/queries/security/CWE-328/WeakSensitiveDataHashing.ql
ql/rust/ql/src/queries/security/CWE-770/UncontrolledAllocationSize.ql
ql/rust/ql/src/queries/security/CWE-825/AccessInvalidPointer.ql
ql/rust/ql/src/queries/summary/LinesOfCode.ql
ql/rust/ql/src/queries/summary/LinesOfUserCode.ql

View File

@@ -3,7 +3,7 @@
* @description Logging sensitive information in plaintext can
* expose it to an attacker.
* @kind path-problem
* @problem.severity error
* @problem.severity warning
* @security-severity 7.5
* @precision high
* @id rust/cleartext-logging

View File

@@ -4,7 +4,7 @@
* arbitrary amounts of memory being allocated, leading to a crash or a
* denial-of-service (DoS) attack.
* @kind path-problem
* @problem.severity recommendation
* @problem.severity warning
* @security-severity 7.5
* @precision high
* @id rust/uncontrolled-allocation-size