ceph-csi/vendor/golang.org/x
Niels de Vos e08005f402 rebase: ParseAcceptLanguage takes a long time to parse complex tags
A vulnerability was found in golang.org/x/text/language package which
could cause a denial of service. An attacker can craft an
Accept-Language header which ParseAcceptLanguage will take significant
time to parse.
Version v0.3.8 of golang.org/x/text fixes a vulnerability.

See-also: https://go.dev/issue/56152
See-also: https://bugzilla.redhat.com/CVE-2022-32149
Signed-off-by: Niels de Vos <ndevos@redhat.com>
2022-10-18 11:58:37 +00:00
..
crypto vendor: vendor fscrypt integration dependencies 2022-10-17 17:33:52 +00:00
net rebase: update kubernetes to v1.25.0 2022-08-25 16:36:35 +00:00
oauth2 ci: update golang dependencies to 1.17.5 release 2021-12-13 07:32:54 +00:00
sys rebase: update kubernetes to v1.25.0 2022-08-25 16:36:35 +00:00
term rebase: bump github.com/aws/aws-sdk-go from 1.43.3 to 1.43.8 2022-03-01 08:11:06 +00:00
text rebase: ParseAcceptLanguage takes a long time to parse complex tags 2022-10-18 11:58:37 +00:00
time rebase: update kubernetes dep to 1.24.0 2022-05-09 09:16:12 +00:00