From 8a8a8d534e088f252f0614f9fbfe264e6909dee6 Mon Sep 17 00:00:00 2001 From: Archana Date: Fri, 12 Jul 2024 15:43:16 +0530 Subject: [PATCH] - Rebase to Go1.22.5 to fix CVE-2024-24791 - Resolves: RHEL-46972 --- .gitignore | 2 ++ golang.spec | 6 +++++- sources | 4 ++-- 3 files changed, 9 insertions(+), 3 deletions(-) diff --git a/.gitignore b/.gitignore index b375349..d0c7ec4 100644 --- a/.gitignore +++ b/.gitignore @@ -23,3 +23,5 @@ SOURCES/go1.19.4.tar.gz /go1.22.3-3-openssl-fips.tar.gz /go1.22.4.tar.gz /go1.22.4-1-openssl-fips.tar.gz +/go1.22.5.tar.gz +/go1.22.5-1-openssl-fips.tar.gz diff --git a/golang.spec b/golang.spec index 44f63ad..fda7878 100644 --- a/golang.spec +++ b/golang.spec @@ -92,7 +92,7 @@ %endif %global go_api 1.22 -%global version 1.22.4 +%global version 1.22.5 %global pkg_release 1 Name: golang @@ -521,6 +521,10 @@ cd .. %endif %changelog +* Fri Jul 12 2024 Archana - 1.22.5-1 +- Rebase to Go1.22.5 to fix CVE-2024-24791 +- Resolves: RHEL-46972 + * Fri Jun 07 2024 Archana - 1.22.4-1 - Addresses CVEs-2024-24789 and CVE-2024-24790 - Resolves: RHEL-40157 diff --git a/sources b/sources index 0ff7936..917fa45 100644 --- a/sources +++ b/sources @@ -1,2 +1,2 @@ -SHA512 (go1.22.4.tar.gz) = 0d12fed902663294530887e59c70ae2499c7fefae093cf9b5f77243e94948ac687199284765e38fb5adf1ba32bdbe4abb210877f3ce097679e4ed612ef163225 -SHA512 (go1.22.4-1-openssl-fips.tar.gz) = c383eb261594dd141394ba57612b288309c24bab1c3a968fa5b99f110e1c913973efd163a5093b4658932f3747faa97830005b1b5b3b9be370fe62a81e1e8f37 +SHA512 (go1.22.5.tar.gz) = e0208d239ce4a4965d3c33fe5befbb1e919a0a695c9ef87c9dfc42d8b888c34301a6eb06a848a4eb662459bc06445d2a1f07275aa5d5e4b0cadb83e0bca0cab7 +SHA512 (go1.22.5-1-openssl-fips.tar.gz) = 230fa331c2470a7a42c916cd1bec79fa423e913d7722235b4386b0aaf678e9baefc71d5c201a6d2c63d5936d06f2756b945ba54513109b046d569daeecc1cef3