poky/meta/recipes-devtools/go
Praveen Kumar b4562b5fca go: fix CVE-2025-4673
Proxy-Authorization and Proxy-Authenticate headers persisted on
cross-origin redirects potentially leaking sensitive information.

Reference:
https://nvd.nist.gov/vuln/detail/CVE-2025-4673

Upstream-patch:
b897e97c36

(From OE-Core rev: 72279bbc1ff2d85563c5245195435f078c5d1a68)

Signed-off-by: Praveen Kumar <praveen.kumar@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
2025-07-07 07:42:58 -07:00
..
go go: fix CVE-2025-4673 2025-07-07 07:42:58 -07:00
go_1.22.12.bb go: upgrade 1.22.11 -> 1.22.12 2025-02-14 06:38:54 -08:00
go-1.22.12.inc go: fix CVE-2025-4673 2025-07-07 07:42:58 -07:00
go-binary-native_1.22.12.bb go: set status of CVE-2024-3566 2025-06-25 08:35:09 -07:00
go-common.inc go: set status of CVE-2024-3566 2025-06-25 08:35:09 -07:00
go-cross_1.22.12.bb go: upgrade 1.22.11 -> 1.22.12 2025-02-14 06:38:54 -08:00
go-cross-canadian_1.22.12.bb go: upgrade 1.22.11 -> 1.22.12 2025-02-14 06:38:54 -08:00
go-cross-canadian.inc go: Drop linkmode with nativesdk/cross-canadian 2024-03-06 12:13:16 +00:00
go-cross.inc go: Remove three unnecessary paths from do_compile[dirs] 2022-03-15 08:40:09 +00:00
go-crosssdk_1.22.12.bb go: upgrade 1.22.11 -> 1.22.12 2025-02-14 06:38:54 -08:00
go-crosssdk.inc gcc/go: Drop crosssdk suffix from virtual provides to improve dependency handling 2023-05-02 10:24:50 +01:00
go-runtime_1.22.12.bb go: upgrade 1.22.11 -> 1.22.12 2025-02-14 06:38:54 -08:00
go-runtime.inc go: Drop the linkmode completely 2024-05-23 08:55:01 -07:00
go-target.inc go: Drop linkmode with nativesdk/cross-canadian 2024-03-06 12:13:16 +00:00