v0.43.0-sec.3 fixes CVE-2026-33814 for Go 1.23.0
·
206 commits
to master
since this release
CVE: CVE-2026-33814
Upstream: https://go.dev/cl/761640
What's Changed
- [Go 1.23.0] CVE-2026-33814: http2: prevent hanging Transport due to bad SETTINGS frame by @jkaurredhat in #10
Full Changelog: v0.43.0-sec.2...v0.43.0-sec.3