Sync golang-1.19 1.19.8-1 (main) from Debian experimental (main)

Bug #2015340 reported by Shengjing Zhu
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
golang-1.19 (Ubuntu)
Fix Released
Undecided
Graham Inggs

Bug Description

Please sync golang-1.19 1.19.8-1 (main) from Debian experimental (main)

Changelog entries since current lunar version 1.19.7-1:

golang-1.19 (1.19.8-1) experimental; urgency=medium

  * Team upload
  * New upstream version 1.19.8
    + CVE-2023-24537: go/parser: infinite loop in parsing
    + CVE-2023-24538: html/template: backticks not treated as string delimiters
    + CVE-2023-24534: net/http, net/textproto: denial of service from excessive
      memory allocation
    + CVE-2023-24536: net/http, net/textproto, mime/multipart: denial of
      service from excessive resource consumption

 -- Shengjing Zhu <email address hidden> Wed, 05 Apr 2023 02:15:56 +0800

Graham Inggs (ginggs)
Changed in golang-1.19 (Ubuntu):
assignee: nobody → Graham Inggs (ginggs)
status: New → In Progress
Revision history for this message
Graham Inggs (ginggs) wrote :

This bug was fixed in the package golang-1.19 - 1.19.8-1
Sponsored for Shengjing Zhu (zhsj)

---------------
golang-1.19 (1.19.8-1) experimental; urgency=medium

  * Team upload
  * New upstream version 1.19.8
    + CVE-2023-24537: go/parser: infinite loop in parsing
    + CVE-2023-24538: html/template: backticks not treated as string delimiters
    + CVE-2023-24534: net/http, net/textproto: denial of service from excessive
      memory allocation
    + CVE-2023-24536: net/http, net/textproto, mime/multipart: denial of
      service from excessive resource consumption

 -- Shengjing Zhu <email address hidden> Wed, 05 Apr 2023 02:15:56 +0800

Changed in golang-1.19 (Ubuntu):
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.