]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
go: fix CVE-2025-61724
authorArchana Polampalli <archana.polampalli@windriver.com>
Fri, 28 Nov 2025 16:07:59 +0000 (21:37 +0530)
committerSteve Sakoman <steve@sakoman.com>
Mon, 1 Dec 2025 15:13:56 +0000 (07:13 -0800)
commit188dbac037809d6e8f0e1667f563fea997ea04b8
tree6183be6182c54101ada5852020bf16b0e07d1d60
parentcfafebef95330e531ab7bb590e5fb566dd5a3dce
go: fix CVE-2025-61724

The Reader.ReadResponse function constructs a response string through repeated
string concatenation of lines. When the number of lines in a response is large,
this can cause excessive CPU consumption.

Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/go/go-1.17.13.inc
meta/recipes-devtools/go/go-1.18/CVE-2025-61724.patch [new file with mode: 0644]