pchickey opened PR #13725 from pchickey:fix-ghsa-4ch3-main to bytecodealliance:main:
- add failing tests demonstrating reported behavior
- add a test for renaming file across perm domains
- remediate hardlink creation and renaming to forbid crossing permission domains
- fixup renaming test-program to get away with dumb structure of testing apparatus
- rustfmt
<!--
Please make sure you include the following information:
If this work has been discussed elsewhere, please include a link to that
conversation. If it was discussed in an issue, just mention "issue #...".Explain why this change is needed. If the details are in an issue already,
this can be brief.Our development process is documented in the Wasmtime book:
https://docs.wasmtime.dev/contributing-development-process.htmlPlease ensure all communication follows the code of conduct:
https://github.com/bytecodealliance/wasmtime/blob/main/CODE_OF_CONDUCT.md
-->
pchickey requested wasmtime-wasi-reviewers for a review on PR #13725.
pchickey requested dicej for a review on PR #13725.
pchickey requested wasmtime-core-reviewers for a review on PR #13725.
:thumbs_up: cfallin submitted PR review.
cfallin added PR #13725 Test and remediate ghsa-4ch3 for main to the merge queue.
:check: cfallin merged PR #13725.
cfallin removed PR #13725 Test and remediate ghsa-4ch3 for main from the merge queue.
pchickey edited PR #13725:
- add failing tests demonstrating reported behavior
- add a test for renaming file across perm domains
- remediate hardlink creation and renaming to forbid crossing permission domains
- fixup renaming test-program to get away with dumb structure of testing apparatus
- rustfmt
Release backports:
- 46.0.1 #13726
- 45.0.3 #13727
- 36.0.12 #13728
- 24.0.11 #13729
<!--
Please make sure you include the following information:
If this work has been discussed elsewhere, please include a link to that
conversation. If it was discussed in an issue, just mention "issue #...".Explain why this change is needed. If the details are in an issue already,
this can be brief.Our development process is documented in the Wasmtime book:
https://docs.wasmtime.dev/contributing-development-process.htmlPlease ensure all communication follows the code of conduct:
https://github.com/bytecodealliance/wasmtime/blob/main/CODE_OF_CONDUCT.md
-->
Last updated: Jul 29 2026 at 05:03 UTC