golang-1.11 (1.11.6-1+deb10u1) buster-security; urgency=high
authorDr. Tobias Quathamer <toddy@debian.org>
Thu, 15 Aug 2019 19:48:59 +0000 (20:48 +0100)
committerDr. Tobias Quathamer <toddy@debian.org>
Thu, 15 Aug 2019 19:48:59 +0000 (20:48 +0100)
commit08dd0fa24457a6f7e43a20e10e3f6d68bcc8cb70
treeb0780c8988bebb29fb5e10e6345e475db3b880cc
parent9bf8eaf24c702460873dee06c667ef604e74db5d
parentca86c57622e6b41abd5bb55333966339c59419df
golang-1.11 (1.11.6-1+deb10u1) buster-security; urgency=high

  * Fix Denial of Service vulnerabilities in the HTTP/2 implementation.
    https://github.com/golang/go/issues/33631
    CVE-2019-9512, CVE-2019-9514
  * Fix multiple Parsing Issues in URL.Parse
    https://github.com/golang/go/issues/29098
    CVE-2019-14809

[dgit import unpatched golang-1.11 1.11.6-1+deb10u1]
33 files changed:
debian/changelog
debian/compat
debian/control
debian/control.in
debian/copyright
debian/docs
debian/gbp.conf
debian/gbp.conf.in
debian/golang-X.Y-doc.dirs
debian/golang-X.Y-doc.install
debian/golang-X.Y-doc.links
debian/golang-X.Y-doc.lintian-overrides
debian/golang-X.Y-go.dirs
debian/golang-X.Y-go.install
debian/golang-X.Y-go.links
debian/golang-X.Y-go.lintian-overrides
debian/golang-X.Y-go.postinst
debian/golang-X.Y-src.install
debian/golang-X.Y-src.lintian-overrides
debian/helpers/goenv.sh
debian/patches/0001-Reproducible-BUILD_PATH_PREFIX_MAP.patch
debian/patches/0002-Fix-Lintian-warnings-about-wrong-interpreter-path.patch
debian/patches/0003-arm64-arm64asm-recognise-new-ssbb-pssbb-mnemonics-fr.patch
debian/patches/0004-fix-Fstatat-by-using-fillStat_t-on-linux-mips64x.patch
debian/patches/0005-Fix-CVE-2019-9512-and-CVE-2019-9514.patch
debian/patches/0006-Fix-CVE-2019-14809.patch
debian/patches/series
debian/rules
debian/source/format
debian/source/lintian-overrides
debian/source/lintian-overrides.in
debian/watch
debian/watch.in