summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
William 'jawn-smith' Wilson [Tue, 6 Dec 2022 19:39:48 +0000 (19:39 +0000)]
golang-1.18 (1.18.9-1) unstable; urgency=medium
* New upstream version 1.18.9
+ CVE-2022-41720: os, net/http: avoid escapes from os.DirFS and http.Dir
on Windows
+ CVE-2022-41717: net/http: limit canonical header cache by bytes, not
entries
[dgit import unpatched golang-1.18 1.18.9-1]
William 'jawn-smith' Wilson [Tue, 6 Dec 2022 19:39:48 +0000 (19:39 +0000)]
Import golang-1.18_1.18.9.orig.tar.gz
[dgit import orig golang-1.18_1.18.9.orig.tar.gz]
William 'jawn-smith' Wilson [Tue, 6 Dec 2022 19:39:48 +0000 (19:39 +0000)]
Import golang-1.18_1.18.9-1.debian.tar.xz
[dgit import tarball golang-1.18 1.18.9-1 golang-1.18_1.18.9-1.debian.tar.xz]