Skip to content

build(deps): update ml-dsa requirement from 0.0.4 to 0.1.0 in /impl/rust/pqf-reader#9

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/cargo/impl/rust/pqf-reader/ml-dsa-0.1.0
Open

build(deps): update ml-dsa requirement from 0.0.4 to 0.1.0 in /impl/rust/pqf-reader#9
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/cargo/impl/rust/pqf-reader/ml-dsa-0.1.0

Conversation

@dependabot
Copy link
Copy Markdown

@dependabot dependabot Bot commented on behalf of github May 20, 2026

Updates the requirements on ml-dsa to permit the latest version.

Commits

@dependabot @github
Copy link
Copy Markdown
Author

dependabot Bot commented on behalf of github May 20, 2026

Labels

The following labels could not be found: dependencies, rust. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot force-pushed the dependabot/cargo/impl/rust/pqf-reader/ml-dsa-0.1.0 branch from e3af1ec to ad3d93e Compare May 30, 2026 12:55
@dependabot dependabot Bot requested a review from systemslibrarian as a code owner May 30, 2026 12:55
@github-actions github-actions Bot added the implementation/rust PR touches the Rust impl. label May 30, 2026
@systemslibrarian
Copy link
Copy Markdown
Owner

Deferred. ml-dsa 0.1 swapped to the signature 3.0 Verifier trait and renamed the verify method. Same situation as ml-kem 0.3 PR #8 — dep-compatible but needs a code change in impl/rust/pqf-reader/src/reader.rs (the verify_hybrid_signature path). Rationale also in pqf-reader/Cargo.toml comment after commit d8b5d3b. Holding open for triage.

Updates the requirements on [ml-dsa](https://github.com/RustCrypto/signatures) to permit the latest version.
- [Commits](RustCrypto/signatures@ml-dsa/v0.0.4...ml-dsa/v0.1.0)

---
updated-dependencies:
- dependency-name: ml-dsa
  dependency-version: 0.1.0
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/cargo/impl/rust/pqf-reader/ml-dsa-0.1.0 branch from ad3d93e to 0d30dbd Compare May 30, 2026 14:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

implementation/rust PR touches the Rust impl.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant