Skip to content

Conversation

@corhere
Copy link
Collaborator

@corhere corhere commented Apr 5, 2024

Resolves GO-2024-2687, a.k.a. CVE-2023-45288

corhere added 2 commits April 5, 2024 11:43
Go 1.21.8 is affected by GO-2024-2687, a.k.a. CVE-2023-45288

Signed-off-by: Cory Snider <csnider@mirantis.com>
Resolves GO-2024-2687, a.k.a. CVE-2023-45288.

    $ go get golang.org/x/net@v0.23.0
    go: upgraded golang.org/x/crypto v0.18.0 => v0.21.0
    go: upgraded golang.org/x/net v0.20.0 => v0.23.0
    go: upgraded golang.org/x/term v0.16.0 => v0.18.0

Signed-off-by: Cory Snider <csnider@mirantis.com>
@neersighted neersighted merged commit b138f52 into Mirantis:master Apr 5, 2024
@corhere corhere deleted the fix-go-2024-2687 branch April 19, 2024 18:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants