]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
go: fix CVE-2025-61723
authorArchana Polampalli <archana.polampalli@windriver.com>
Fri, 28 Nov 2025 16:07:58 +0000 (21:37 +0530)
committerSteve Sakoman <steve@sakoman.com>
Mon, 1 Dec 2025 15:13:56 +0000 (07:13 -0800)
commitcfafebef95330e531ab7bb590e5fb566dd5a3dce
treec42aaa3a6633837bff3c19450998f4e3807c6ec7
parentb3f055df67cf345c9a17c5c1c874c778d538ba9e
go: fix CVE-2025-61723

The processing time for parsing some invalid inputs scales non-linearly with
respect to the size of the input. This affects programs which parse untrusted PEM inputs.

Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-devtools/go/go-1.17.13.inc
meta/recipes-devtools/go/go-1.18/CVE-2025-61723.patch [new file with mode: 0644]