Skip to content

Bump x/net package to 0.24/latest#3613

Merged
zalegrala merged 3 commits intografana:mainfrom
pavolloffay:bump-x-net
May 8, 2024
Merged

Bump x/net package to 0.24/latest#3613
zalegrala merged 3 commits intografana:mainfrom
pavolloffay:bump-x-net

Conversation

@pavolloffay
Copy link
Copy Markdown
Contributor

@pavolloffay pavolloffay commented Apr 26, 2024

What this PR does:

Fixes CVE https://bugzilla.redhat.com/show_bug.cgi?id=2268273 CVE-2023-45288

Which issue(s) this PR fixes:
Fixes #

Checklist

  • Tests updated
  • Documentation added
  • CHANGELOG.md updated - the order of entries should be [CHANGE], [FEATURE], [ENHANCEMENT], [BUGFIX]

Copy link
Copy Markdown
Contributor

@mdisibio mdisibio left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hi, thanks for putting this up. Please add a link to the CVE in the description, and a changelog entry.

@pavolloffay
Copy link
Copy Markdown
Contributor Author

Updated description and added changelog

@pavolloffay
Copy link
Copy Markdown
Contributor Author

@mdisibio could we backport it to 2.4.1 #3614 ?

Signed-off-by: Pavol Loffay <p.loffay@gmail.com>
Signed-off-by: Pavol Loffay <p.loffay@gmail.com>
Signed-off-by: Pavol Loffay <p.loffay@gmail.com>
@zalegrala zalegrala merged commit 9032132 into grafana:main May 8, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants