-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 04 Oct 2022 15:34:34 -0500 Source: golang-1.18 Architecture: source Version: 1.18.7-1 Distribution: unstable Urgency: medium Maintainer: Debian Go Compiler Team <team+go-compiler@tracker.debian.org> Changed-By: William 'jawn-smith' Wilson <jawn-smith@ubuntu.com> Changes: golang-1.18 (1.18.7-1) unstable; urgency=medium . * New upstream version 1.18.7 + CVE-2022-2879: archive/tar: unbounded memory consumption when reading headers + CVE-2022-2880: net/http/httputil: ReverseProxy should not forward unparseable query parameters + CVE-2022-41715: regexp/syntax: limit memory used by parsing regexps Checksums-Sha1: 7aeaf33181287a5c8bd750717d3f0486a8458ab3 2861 golang-1.18_1.18.7-1.dsc 00b1dff2b508325eb5f1f8dee0f92ba020d0ae12 22872579 golang-1.18_1.18.7.orig.tar.gz 0f8a63d9af4afd110657ab2704113168757bccda 819 golang-1.18_1.18.7.orig.tar.gz.asc 94d9303a44553212f79bd3842775943111eecd47 42028 golang-1.18_1.18.7-1.debian.tar.xz bbfd43345520d8c4a50a7676b2c7611fd85fe20e 6957 golang-1.18_1.18.7-1_amd64.buildinfo Checksums-Sha256: 4e28d4b4683a71b43340d60fb6edfc4e1997a46c9499c84f4be9599e856788e9 2861 golang-1.18_1.18.7-1.dsc 9467e33b819f71bebb21fb0ee1dd6794fd2244ae94907a984286712f9839a944 22872579 golang-1.18_1.18.7.orig.tar.gz b62395c51251ced13e9487319b133fd05e332b85240f8eda3b425495e17401a4 819 golang-1.18_1.18.7.orig.tar.gz.asc 450e295cb5872bb438919f59bb2e6bdf28bdb55d9563dfec07be85ec335b5e65 42028 golang-1.18_1.18.7-1.debian.tar.xz b85a4c9bf7b2b84f998b3548f165af5987206893d359cf97233cb7743e9213cb 6957 golang-1.18_1.18.7-1_amd64.buildinfo Files: c88a201e4c4236bf4c268198e3e7d8ae 2861 golang optional golang-1.18_1.18.7-1.dsc 05239947d362d0f3bcbc7406a40b8d10 22872579 golang optional golang-1.18_1.18.7.orig.tar.gz f4851175bc0043bbdf127ba29afa72de 819 golang optional golang-1.18_1.18.7.orig.tar.gz.asc 4ac4319008601c8828c365dd40aafe86 42028 golang optional golang-1.18_1.18.7-1.debian.tar.xz 31291cda11fb3b0553638d0f9eb9a68a 6957 golang optional golang-1.18_1.18.7-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJEBAEBCAAuFiEEFCQhsZrUqVmW+VBy6iUAtBLFms8FAmNBKsoQHGZva2FAZGVi aWFuLm9yZwAKCRDqJQC0EsWaz7G+D/45t1/b0uw7y/OZdYM3SuvnCKl/QdvW+vjt bpq0gTyoGTsi39xso6kvPHqrx2y97DwoBF0u9+n5T9A6+kFtOqIm1q7pE7y204QX QK13/Vj5qAPn0aTDWciNaKqxlLdkkyL+xqBjq6CW/mh/Rx8IC3EJpIhggqklXKHt 9j6zr/77k9ctPZXiUc7FKDhFTnm2c70CvPUuc81ID8fhnURTzqx5V3GvnNJ+Ltho c+6gQSlMQkh6OgiC6fIeVsperQ6ZpSvQzacM9zdT4I01nUZLBNuuosWSM7IAAR+9 GMsfhXFqNii2+PubOP6timp2qOSBsErFZbkff+fkZfjP6YhHIbKqUyG/YSVj/2Si ks1SdXUF6x1XPOVh4h0jTld6JJGC8lao4g4QiMYGzEp/v/ov1PSJvwjj3lO1ep+3 /9lHfCJltwBoJrKOsqkrB6U9Qi19I7lO+8cVpq/2aLVWxmn0bV698yZYdPVzpdWJ MD4zgMLugHT3nDvR4S6Qg4TzOIIeuT4+HGALjaX+gMPl1EG7QfL8segc/CvojPkY CJu+M/j1FR7+miaN7uaqgPZiv+iRGNAmikh9a9eAKuz9GS3VEgV0Vj2xza4ihAe1 xSyu7whN21nFDytrLWgHdmHwqm+4rynKSp7xkPabpa4DHWmw2ChEEzyj55w0l/VZ D0mMBRv9/w== =NlMs -----END PGP SIGNATURE-----