Fixes the following CVEs: CVE-2024-34155: go/parser: stack exhaustion in all Parse* functions CVE-2024-34156: encoding/gob: stack exhaustion in Decoder.Decode CVE-2024-34158: go/build/constraint: stack exhaustion in Parse https://go.dev/doc/devel/release#go1.22.7 Signed-off-by: Christian Stewart <christian@aperture.us> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> (cherry picked from commit 8d371dbe55ea641f7afa3c00ea6475012b8e84fc) Signed-off-by: Peter Korsgaard <peter@korsgaard.com> (cherry picked from commit 66425c8e1485b83551bb0d8704a01521ed5309e9) Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
4 lines
201 B
Plaintext
4 lines
201 B
Plaintext
# From https://go.dev/dl
|
|
sha256 66432d87d85e0cfac3edffe637d5930fc4ddf5793313fe11e4a0f333023c879f go1.22.7.src.tar.gz
|
|
sha256 2d36597f7117c38b006835ae7f537487207d8ec407aa9d9980794b2030cbc067 LICENSE
|