[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted golang-1.19 1.19.3-1 (source) into unstable



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Thu, 03 Nov 2022 08:39:47 -0500
Source: golang-1.19
Architecture: source
Version: 1.19.3-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Go Compiler Team <team+go-compiler@tracker.debian.org>
Changed-By: William 'jawn-smith' Wilson <jawn-smith@ubuntu.com>
Changes:
 golang-1.19 (1.19.3-1) unstable; urgency=medium
 .
   * New upstream version 1.19.3
     + CVE-2022-41716: syscall, os/exec: unsanitized NUL in environment variables
       On Windows, syscall.StartProcess and os/exec.Cmd did not properly check
       for invalid environment variable values. A malicious environment variable
       value could exploit this behavior to set a value for a different
       environment variable.
Checksums-Sha1:
 2c203dee331641f6fa747514747cce08a5741839 2255 golang-1.19_1.19.3-1.dsc
 371040fc4a5401209690f4cf55ac73e5992a3fe8 26535494 golang-1.19_1.19.3.orig.tar.gz
 e31af74e6e7becc82288c9fbee442870933177dd 819 golang-1.19_1.19.3.orig.tar.gz.asc
 f0f80896226d2202792c5491ef9bd45b1a00f58d 41448 golang-1.19_1.19.3-1.debian.tar.xz
 a79c012203b1993b8f371cfe03f2c4feb798b210 6527 golang-1.19_1.19.3-1_amd64.buildinfo
Checksums-Sha256:
 76b93dc633fe70d7f56a3de8d502ce820c745abe2c70fcf85c1766c01fa3696b 2255 golang-1.19_1.19.3-1.dsc
 18ac263e39210bcf68d85f4370e97fb1734166995a1f63fb38b4f6e07d90d212 26535494 golang-1.19_1.19.3.orig.tar.gz
 750e894357cb8c265e9f99e4bf1f55f69aabfcfe031f2a88ef543ea660d19e56 819 golang-1.19_1.19.3.orig.tar.gz.asc
 2264abe5f382f500c5d5860ff86f097ac2591842ea41bb9211cbc76f2563e182 41448 golang-1.19_1.19.3-1.debian.tar.xz
 d604038c9b42f072d5544d7d3a72a84110b61dc3672451f3f08c78e69cb7b9ae 6527 golang-1.19_1.19.3-1_amd64.buildinfo
Files:
 d6da726952b307b9b9e05c1a1561db4a 2255 golang optional golang-1.19_1.19.3-1.dsc
 9ad55c8afe3e623d37c4b460fc863bca 26535494 golang optional golang-1.19_1.19.3.orig.tar.gz
 d7c879c19795f86b203f4858fdeeb096 819 golang optional golang-1.19_1.19.3.orig.tar.gz.asc
 5bf6a113294a6884bdc80c7c9bdb73cd 41448 golang optional golang-1.19_1.19.3-1.debian.tar.xz
 e29ed25cbe763c437a4fba1976e362fe 6527 golang optional golang-1.19_1.19.3-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----

iIYEARYIAC4WIQSRhdT1d2eu7mxV1B5/RPol6lUUywUCY2v9VRAcemhzakBkZWJp
YW4ub3JnAAoJEH9E+iXqVRTLnzsA+wVB/BK9l7ECUNzloMbwd8Fk66qMblEmrhpe
7T77qGBlAQCXawqkUuOU31E/UfdUVp90A1014Yw7fgLwQ5fKY7RtBQ==
=/Y0Y
-----END PGP SIGNATURE-----


Reply to: