-
Notifications
You must be signed in to change notification settings - Fork 567
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Upgrade to 1.7.7 with newer golang/x/net for CVE-2023-39325 and CVE-2023-44487 #12125
Conversation
6d22e22
to
e87be71
Compare
I noticed that |
SPECS/application-gateway-kubernetes-ingress/application-gateway-kubernetes-ingress.spec
Outdated
Show resolved
Hide resolved
SPECS/application-gateway-kubernetes-ingress/application-gateway-kubernetes-ingress.spec
Outdated
Show resolved
Hide resolved
c5485a6
to
0805b39
Compare
I created a new PR for this change against 3.0-dev Upgrade application-gateway-kubernetes-ingress to v1.7.7 by gjswalling · Pull Request #12215 · microsoft/azurelinux |
@@ -59,6 +43,10 @@ cp appgw-ingress %{buildroot}%{_bindir}/ | |||
%{_bindir}/appgw-ingress | |||
|
|||
%changelog | |||
* Fri Jan 31 2025 Gary Swalling <gaswal@@microsoft.com> - 1.7.7-1 |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
fix this before merging
Merge Checklist
All boxes should be checked before merging the PR (just tick any boxes which don't apply to this PR)
*-static
subpackages, etc.) have had theirRelease
tag incremented../cgmanifest.json
,./toolkit/scripts/toolchain/cgmanifest.json
,.github/workflows/cgmanifest.json
)./LICENSES-AND-NOTICES/SPECS/data/licenses.json
,./LICENSES-AND-NOTICES/SPECS/LICENSES-MAP.md
,./LICENSES-AND-NOTICES/SPECS/LICENSE-EXCEPTIONS.PHOTON
)*.signatures.json
filessudo make go-tidy-all
andsudo make go-test-coverage
passSummary
Upgrade application-gateway-kubernetes-ingress to 1.7.7 with golang/x/net 0.33.0 for CVE-2023-39325 and CVE-2023-44487
Change Log
Does this affect the toolchain?
NO
Links to CVEs
Test Methodology