Skip to content

[release-1.11] bump golang.org/x/net to v0.7.0#1948

Merged
mtrmac merged 1 commit into
podman-container-tools:release-1.11from
lsm5:release-1.11-CVE-2022-41723
Mar 24, 2023
Merged

[release-1.11] bump golang.org/x/net to v0.7.0#1948
mtrmac merged 1 commit into
podman-container-tools:release-1.11from
lsm5:release-1.11-CVE-2022-41723

Conversation

@lsm5

@lsm5 lsm5 commented Mar 23, 2023

Copy link
Copy Markdown
Contributor

@lsm5
lsm5 requested a review from mtrmac March 23, 2023 11:37
@mtrmac

mtrmac commented Mar 23, 2023

Copy link
Copy Markdown
Contributor

Thanks! If this is targeted at an enterprise stable branch, updating only to v0.7.0 should still include the fix, but it would be quite a bit smaller, potentially decreasing risk.

@lsm5

lsm5 commented Mar 24, 2023

Copy link
Copy Markdown
Contributor Author

Thanks! If this is targeted at an enterprise stable branch, updating only to v0.7.0 should still include the fix, but it would be quite a bit smaller, potentially decreasing risk.

yes, good point. let me update the PR

Resolves: CVE-2022-41723
Ref: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-41723

Signed-off-by: Lokesh Mandvekar <lsm5@fedoraproject.org>
@lsm5
lsm5 force-pushed the release-1.11-CVE-2022-41723 branch from 30d7f50 to 902506d Compare March 24, 2023 04:25
@lsm5 lsm5 changed the title [release-1.11] bump golang.org/x/net to v0.8.0 [release-1.11] bump golang.org/x/net to v0.7.0 Mar 24, 2023
@lsm5

lsm5 commented Mar 24, 2023

Copy link
Copy Markdown
Contributor Author

@mtrmac done. PTAL

@mtrmac
mtrmac merged commit 8191ef3 into podman-container-tools:release-1.11 Mar 24, 2023
@mtrmac

mtrmac commented Mar 24, 2023

Copy link
Copy Markdown
Contributor

1.11.2 release PR: #1951

@lsm5
lsm5 deleted the release-1.11-CVE-2022-41723 branch April 3, 2023 14:13
@github-actions github-actions Bot locked as resolved and limited conversation to collaborators Sep 15, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants