Skip to content

[AUTO-CHERRYPICK] fix cve-2022-21698 in moby-engine - branch main#7735

Merged
tobiasb-ms merged 1 commit intomainfrom
cblmargh/cherry-pick-pr-7649-to-main
Feb 7, 2024
Merged

[AUTO-CHERRYPICK] fix cve-2022-21698 in moby-engine - branch main#7735
tobiasb-ms merged 1 commit intomainfrom
cblmargh/cherry-pick-pr-7649-to-main

Conversation

@CBL-Mariner-Bot
Copy link
Copy Markdown
Collaborator

This is an auto-generated pull request to cherry-pick commit f0197ac to main. Original PR: #7649

Fixes CVE-2022-21698 for moby-engine. The vulnerability is in the client_golang go module, which is vendored in this package. Fix is to apply a (modified) patch to the vendored code.

(cherry picked from commit f0197ac)
@CBL-Mariner-Bot CBL-Mariner-Bot requested a review from a team as a code owner February 6, 2024 23:38
@CBL-Mariner-Bot CBL-Mariner-Bot added the Auto Fast-track Cherry-pick Automatic cherry-pick from fast-track branch label Feb 6, 2024
@tobiasb-ms tobiasb-ms merged commit d984b2f into main Feb 7, 2024
@tobiasb-ms tobiasb-ms deleted the cblmargh/cherry-pick-pr-7649-to-main branch February 7, 2024 22:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Auto Fast-track Cherry-pick Automatic cherry-pick from fast-track branch Automatic PR main PR Destined for main

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants