Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Dec 2, 2025

Bumps x509-parser from 0.15.1 to 0.18.0.

Changelog

Sourced from x509-parser's changelog.

0.18.0

Added/Changed

  • Update lock file and dependencies
  • Fix clippy warnings
  • Visitor: add method to visit unknown extension and those with parse errors
  • Add new feature verify-aws to used aws-lc-rs as crypto provider instead of ring
    • The features are exclusive, so only one should be used
    • If both are specified, aws-lc-rs is used (but both dependencies are included)
  • Add as_raw methods to X509Certificate, CertificateRevocationList and X509CertificationRequest
    • This method exposes the raw ASN.1 DER bytes used to build the object (#217)

Extensions:

  • Add support for SubjectInfoAccess extension
  • GeneralName: add a new variant Invalid so an invalid entry does not stop parsing for the entire list of names (for ex in SAN)

Fixed

  • PEM: ignore lines in comments which contain invalid UTF-8 characters (#180)

Thanks

  • Daniel McCarney

0.17.0

Added/Changed/Fixed

Global:

  • Upgrade asn1-rs to version 0.6.2. (#161)
  • Update asn1-rs to 0.7, der-parser to 10.0 and oid-registry to 0.8
  • Upgrade time to 0.3.35 to make the crate compatible with rust >1.79.0 (#168, #175)
  • Update MSRV to 1.67 (due to time 0.3.35, see #168)
  • Add Visitor traits for X.509 Certificates and Certificate Revocation Lists (#179)

Code:

  • Add support for RSA-PSS signature verification (#156)
  • ASN1Time: store the kind of time (UTC or Generalized) in ASN1Time (#163)
  • X509StructureValidator: add validation for dates encoding (#163)
  • X509StructureValidator: enforce version > 1 for issuerUniqueID or subjectUniqueID (Closes #162)

Thanks

  • Daniel McCarney, DefiCake, Victor M. Alvarez, Nikolaus Thuemmel

0.16.0

Added/Changed/Fixed

... (truncated)

Commits
  • 1524f7d Prepare release 0.18.0
  • ba89c10 Improve documentation for the as_raw methods
  • 9d2b06d Add AsRef\<[u8]> implementations (based on as_raw())
  • f94893c Add as_raw method to X509CertificationRequest to expose raw bytes
  • 950e457 Add as_raw method to CertificateRevocationList to expose raw bytes
  • c657752 Add as_raw method to Certificate to expose raw bytes (closes #217)
  • b335e9c Run cargo update
  • e57a1b8 Add documentation for features verify and verify-aws
  • 0b87559 CI: add verify-aws feature test in test matrix
  • 8c54b1a Add new feature verify-aws to used aws-lc-rs as crypto provider instead o...
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Bumps [x509-parser](https://github.com/rusticata/x509-parser) from 0.15.1 to 0.18.0.
- [Changelog](https://github.com/rusticata/x509-parser/blob/x509-parser-0.18.0/CHANGELOG.md)
- [Commits](rusticata/x509-parser@x509-parser-0.15.1...x509-parser-0.18.0)

---
updated-dependencies:
- dependency-name: x509-parser
  dependency-version: 0.18.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file rust Pull requests that update Rust code labels Dec 2, 2025
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Feb 9, 2026

Superseded by #500.

@dependabot dependabot bot closed this Feb 9, 2026
@dependabot dependabot bot deleted the dependabot/cargo/x509-parser-0.18.0 branch February 9, 2026 04:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update Rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants