buildroot/package/go
Christian Stewart b2c193295b package/go: security bump to version 1.22.7
Fixes the following CVEs:

CVE-2024-34155: go/parser: stack exhaustion in all Parse* functions
CVE-2024-34156: encoding/gob: stack exhaustion in Decoder.Decode
CVE-2024-34158: go/build/constraint: stack exhaustion in Parse

https://go.dev/doc/devel/release#go1.22.7

Signed-off-by: Christian Stewart <christian@aperture.us>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
(cherry picked from commit 8d371dbe55ea641f7afa3c00ea6475012b8e84fc)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
(cherry picked from commit 66425c8e1485b83551bb0d8704a01521ed5309e9)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2024-09-19 14:07:58 +02:00
..
0001-build.go-explicit-option-for-crosscompilation.patch package/go-src: fix variable typo in patch description 2024-09-19 11:04:58 +02:00
0002-cmd-dist-set-buildvcs-false-when-building-go-bootstr.patch package/go: adjust Upstream header in patch 2023-07-28 22:09:22 +02:00
Config.in.host package/go: bump to version go1.22.1 2024-09-19 14:03:52 +02:00
go.hash package/go: security bump to version 1.22.7 2024-09-19 14:07:58 +02:00
go.mk package/go: security bump to version 1.22.7 2024-09-19 14:07:58 +02:00