Merge version 1.18.8-1+rpi1 and 1.18.9-1 to produce 1.18.9-1+rpi1 archive/raspbian/1.18.9-1+rpi1 raspbian/1.18.9-1+rpi1
authorRaspbian automatic forward porter <root@raspbian.org>
Sat, 17 Dec 2022 14:55:27 +0000 (14:55 +0000)
committerRaspbian automatic forward porter <root@raspbian.org>
Sat, 17 Dec 2022 14:55:27 +0000 (14:55 +0000)
1  2 
debian/changelog

index f16491a437820fa7ebd11b783eaa1ecf414a361c,38c3d7c7a66639c87255a27b2211c78000e309ef..49b3c3fca7fefb4912ef94a94ab601b3c78c7686
@@@ -1,9 -1,12 +1,19 @@@
- golang-1.18 (1.18.8-1+rpi1) bookworm-staging; urgency=medium
++golang-1.18 (1.18.9-1+rpi1) bookworm-staging; urgency=medium
 +
 +  [changes brought forward from 1.18.4-2+rpi1 by Peter Michael Green <plugwash@raspbian.org> at Tue, 09 Aug 2022 16:49:03 +0000]
 +  * Disable testsuite.
 +
-  -- Raspbian forward porter <root@raspbian.org>  Tue, 15 Nov 2022 10:38:05 +0000
++ -- Raspbian forward porter <root@raspbian.org>  Sat, 17 Dec 2022 14:55:27 +0000
++
+ golang-1.18 (1.18.9-1) unstable; urgency=medium
+   * New upstream version 1.18.9
+     + CVE-2022-41720: os, net/http: avoid escapes from os.DirFS and http.Dir
+       on Windows
+     + CVE-2022-41717: net/http: limit canonical header cache by bytes, not
+       entries
+  -- William 'jawn-smith' Wilson <jawn-smith@ubuntu.com>  Tue, 06 Dec 2022 13:39:48 -0600
  
  golang-1.18 (1.18.8-1) unstable; urgency=medium