[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted golang-1.20 1.20.5-1 (source) into unstable



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Wed, 07 Jun 2023 12:05:11 +0800
Source: golang-1.20
Architecture: source
Version: 1.20.5-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Go Compiler Team <team+go-compiler@tracker.debian.org>
Changed-By: Shengjing Zhu <zhsj@debian.org>
Changes:
 golang-1.20 (1.20.5-1) unstable; urgency=medium
 .
   * Team upload
   * New upstream version 1.20.5
     + CVE-2023-29402: cmd/go: cgo code injection
     + CVE-2023-29403: runtime: unexpected behavior of setuid/setgid binaries
     + CVE-2023-29404/CVE-2023-29405: cmd/go: improper sanitization of LDFLAGS
Checksums-Sha1:
 8be910cfc75e448c22858f16202b4d07fec4db4b 2234 golang-1.20_1.20.5-1.dsc
 1c98cb58e2edd89d722a60a108f217a60023d16c 26192951 golang-1.20_1.20.5.orig.tar.gz
 99bbe5c07157ff73f5ec3c21b2275f442c7e9c50 819 golang-1.20_1.20.5.orig.tar.gz.asc
 ada2765191738c1871e361f2a9e601307d88a026 37176 golang-1.20_1.20.5-1.debian.tar.xz
 9b4aed3f83de823895aa8f30979a94cb5f3a7d01 6216 golang-1.20_1.20.5-1_amd64.buildinfo
Checksums-Sha256:
 fe614670c7e50dae9c7188b5e5b25a16f283a5d2988d0caa07fecab4eb0107cc 2234 golang-1.20_1.20.5-1.dsc
 9a15c133ba2cfafe79652f4815b62e7cfc267f68df1b9454c6ab2a3ca8b96a88 26192951 golang-1.20_1.20.5.orig.tar.gz
 ef0fd1a8d7af339d70e05a96da889d95c6b77d027a176f3975b89c58c6053bbd 819 golang-1.20_1.20.5.orig.tar.gz.asc
 ce65ca438b2740cdbbd1bf7ba118a178ad5afae2f9b7425a21039bd0a1b7b419 37176 golang-1.20_1.20.5-1.debian.tar.xz
 01f438985ad62609cb928783e331d6061c5084fa4686e03fdfe8fb863c69224f 6216 golang-1.20_1.20.5-1_amd64.buildinfo
Files:
 3ad6ada77566caa0986e54cb93d7bfaf 2234 golang optional golang-1.20_1.20.5-1.dsc
 336cae9b3afcfd3e60e41cae5401c4c2 26192951 golang optional golang-1.20_1.20.5.orig.tar.gz
 3976676a9e463b0b5b86354618727a3b 819 golang optional golang-1.20_1.20.5.orig.tar.gz.asc
 8123930d786b4a143466752aa3b29cfc 37176 golang optional golang-1.20_1.20.5-1.debian.tar.xz
 ccb918a1e606c17a7d9c55ff239f8e71 6216 golang optional golang-1.20_1.20.5-1_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----

iHUEARYIAB0WIQSRhdT1d2eu7mxV1B5/RPol6lUUywUCZIAcWAAKCRB/RPol6lUU
yybtAP4ycSk1uNC3lcOMDCwF109Ug15KHdIt3EICXSgM/s+3zgEA0FOhz3y0FNN6
TQij7tiQmWx/3fWH2eGd8BdgYoH7kwE=
=D4id
-----END PGP SIGNATURE-----


Reply to: