Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

security: fix CVE-2022-27664 [1.18 backport] #53977

Open
neild opened this issue Jul 20, 2022 · 1 comment
Open

security: fix CVE-2022-27664 [1.18 backport] #53977

neild opened this issue Jul 20, 2022 · 1 comment
Assignees
Labels
CherryPickCandidate release-blocker Security
Milestone

Comments

@neild
Copy link
Contributor

@neild neild commented Jul 20, 2022

This is a PRIVATE issue for CVE-2022-27664 tracked in http://b/219507101 and fixed by http://tg/1413887.

@neild neild added this to the Go1.18.5 milestone Jul 20, 2022
@neild neild self-assigned this Jul 20, 2022
@cherrymui cherrymui modified the milestones: Go1.18.5, Go1.18.6 Jul 29, 2022
@dmitshur dmitshur added the CherryPickCandidate label Aug 8, 2022
@dmitshur dmitshur changed the title security: fix CVE-2022-27664 security: fix CVE-2022-27664 [1.18 backport] Aug 8, 2022
@dmitshur
Copy link
Contributor

@dmitshur dmitshur commented Aug 8, 2022

Since this is in Go1.18.6 milestone, added a "[1.18 backport]" suffix and a CherryPickCandidate label so this doesn't get missed during backport review, but I expect it to get approved as a security fix.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
CherryPickCandidate release-blocker Security
Projects
None yet
Development

No branches or pull requests

3 participants