Skip to content

Backport of Bump the golang.org/x/net to 0.7.0 to address CVE-2022-41723 into release/1.15.x#17027

Merged
nathancoleman merged 2 commits intorelease/1.15.xfrom
backport/updategolangx/urgently-pleasing-skylark
Apr 18, 2023
Merged

Backport of Bump the golang.org/x/net to 0.7.0 to address CVE-2022-41723 into release/1.15.x#17027
nathancoleman merged 2 commits intorelease/1.15.xfrom
backport/updategolangx/urgently-pleasing-skylark

Conversation

@hc-github-team-consul-core
Copy link
Collaborator

Backport

This PR is auto-generated from #16754 to be assessed for backporting due to the inclusion of the label backport/1.15.

WARNING automatic cherry-pick of commits failed. Commits will require human attention.

merge conflict error: unable to process merge commit: "467d0586fca3a96eb508e71ba23b578ae706b085", automatic backport requires rebase workflow

The below text is copied from the body of the original PR.


Description

To address this security vulnerability issue which has a HIGH severity.
https://nvd.nist.gov/vuln/detail/CVE-2022-41723

Testing & Reproduction steps

Links

PR Checklist

  • updated test coverage
  • external facing docs updated
  • not a security concern

Overview of commits

@hc-github-team-consul-core hc-github-team-consul-core force-pushed the backport/updategolangx/urgently-pleasing-skylark branch from 6af2855 to 63fc479 Compare April 18, 2023 17:31
@hc-github-team-consul-core hc-github-team-consul-core force-pushed the backport/updategolangx/urgently-pleasing-skylark branch from 5758e2c to bb126b3 Compare April 18, 2023 17:31
@github-actions github-actions bot added the pr/dependencies PR specifically updates dependencies of project label Apr 18, 2023
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Auto approved Consul Bot automated PR

@nathancoleman nathancoleman self-assigned this Apr 18, 2023
@nathancoleman nathancoleman marked this pull request as ready for review April 18, 2023 18:14
@nathancoleman nathancoleman merged commit c205bd0 into release/1.15.x Apr 18, 2023
@nathancoleman nathancoleman deleted the backport/updategolangx/urgently-pleasing-skylark branch April 18, 2023 18:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

pr/dependencies PR specifically updates dependencies of project

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants