TUF - v3.1.1

Security

This is a security fix release to address advisory GHSA-77hh-43cm-v8j6. The issue does not affect tuf.ngclient users, but could affect tuf.api.metadata users.

Changed

  • Added additional input validation to tuf.api.metadata.Targets.get_delegated_role()

Security

Security wording was detected, but no CVEs were found.

Details

date
Feb. 16, 2024, 9:37 a.m.
name
v3.1.1
type
Patch
👇
Register or login to:
  • 🔍View and search all TUF releases.
  • 🛠️Create and share lists to track your tools.
  • 🚨Setup notifications for major, security, feature or patch updates.
  • 🚀Much more coming soon!
Continue with GitHub
Continue with Google
or