Skip to content

CVE number in v2.9.8 release note is wrong #9730

@0boro

Description

@0boro

Welcome!

  • Yes, I've searched similar issues on GitHub and didn't find any.
  • Yes, I've searched similar issues on the Traefik community forum and didn't find any.

What did you do?

Following the CVE link on https://github.com/traefik/traefik/releases/tag/v2.9.8 to https://www.cve.org/CVERecord?id=CVE-2022-4172.
I was wondering how the go/net lib is fixing something in QEMU (ACPI ERST). After searching on https://go.googlesource.com/net/+/refs/tags/v0.7.0, maybe the release notes mean CVE-2022-41723

What did you see instead?

CVE about an issue in QEMU

What version of Traefik are you using?

irrelevant

What is your environment & configuration?

If applicable, please paste the log output in DEBUG level

No response

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions