115 Commits

Author SHA1 Message Date
EulerOSWander
34ef1309b1 internal/poll:add SPLICE_F_NONBLOCK flag for splice to avoid insonsistency with O_NONBLOC
internal/poll:add SPLICE_F_NONBLOCK flag for splice to avoid insonsistency with O_NONBLOC

Signed-off-by: EulerOSWander <314264452@qq.com>
(cherry picked from commit 1e4bf241308377399305e37d1993066ca37baaa7)
2024-09-19 16:29:29 +08:00
openeuler-ci-bot
3e4e38218c
!398 [sync] PR-397: backport: ensure pointer arithmetic happens after the nil check
From: @openeuler-sync-bot 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-07-30 15:32:37 +00:00
Lu Jingxiao
1ab3d795f9 backport: ensure pointer arithmetic happens after the nil check
cmd/compile: ensure pointer arithmetic happens after the nil check

Conflict:NA
Reference:https://go-review.googlesource.com/c/go/+/537775

Signed-off-by: Lu Jingxiao <lujingxiao@huawei.com>
(cherry picked from commit bcf346236f2120b938d24cfd37971113c5355394)
2024-07-30 20:00:38 +08:00
openeuler-ci-bot
d7a4cd6732
!395 [sync] PR-394: backport: handle constant pointer offsets in dead store elimination
From: @openeuler-sync-bot 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-07-30 09:18:04 +00:00
Lu Jingxiao
6ce297ae7e backport: handle constant pointer offsets in dead store elimination
Backport cmd/compile: handle constant pointer offsets in dead store elimination
Reference:https://go-review.googlesource.com/c/go/+/538595

Signed-off-by: Lu Jingxiao <lujingxiao@huawei.com>
(cherry picked from commit 85e89048359f503459f974783059e9d80a50f6fd)
2024-07-30 16:21:19 +08:00
openeuler-ci-bot
f85ae64e47
!392 backport:fix send correct LastStreamID in stream-caused GOAWAY
From: @euleroswander 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-07-30 03:02:34 +00:00
EulerOSWander
45cadb6ea8 backport: fix send correct LastStreamID in stream-cause GOAWAY
fix send correct LastStreamID in stream-cause GOAWAY

Signed-off-by: EulerOSWander <314264452@qq.com>
2024-07-29 11:28:04 +08:00
openeuler-ci-bot
8d4493a085
!387 [sync] PR-385: [Backport]fix CVE-2024-24791
From: @openeuler-sync-bot 
Reviewed-by: @fuowang 
Signed-off-by: @fuowang
2024-07-15 09:17:36 +00:00
kywqs
d300371526 [Backport]fix CVE-2024-24791
(cherry picked from commit 4be9bd5130e62a4e04ec556ca4d27cfd2e6c7a93)
2024-07-15 10:16:32 +08:00
openeuler-ci-bot
570ec10edc
!380 [Backport]fix CVE-2023-39326,CVE-2024-24789
From: @hcnbxx 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2024-06-27 01:27:31 +00:00
hanchao
52c6cc644d [Backport]fix CVE-2023-39326,CVE-2024-24789
Reference:https://go-review.googlesource.com/c/go/+/547356,https://go-review.googlesource.com/c/go/+/585397
reason:fix CVE-2023-39326,CVE-2024-24789
2024-06-24 13:00:59 +08:00
openeuler-ci-bot
936ed05c85
!377 fix CVE-2023-45285
From: @euleroswander 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-06-22 06:04:08 +00:00
openeuler-ci-bot
74540eecfe
!374 backport CVE-2024-24787
From: @euleroswander 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-06-21 08:12:35 +00:00
EulerOSWander
ad1139cf93 backport: fix CVE-2023-45285
Signed-off-by: EulerOSWander <314264452@qq.com>
2024-06-21 15:23:30 +08:00
EulerOSWander
159f203404 bugfix: fix CVE-2024-24787
Signed-off-by: EulerOSWander <314264452@qq.com>
2024-06-21 15:12:50 +08:00
openeuler-ci-bot
102789fc72
!372 backport: fix CVE-2024-24790
From: @mmzzmm 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-06-21 06:14:21 +00:00
Zhao Mengmeng
75945c5da0 Fix CVE-2024-24790
Backport from upstream commit:
051bdf3fd1

Signed-off-by: Zhao Mengmeng <zhaomengmeng@kylinos.cn>
2024-06-14 09:28:43 +08:00
openeuler-ci-bot
405a9f32ad
!370 Fix missing go.env file
From: @abner-chenc 
Reviewed-by: @fuowang 
Signed-off-by: @fuowang
2024-06-13 09:20:58 +00:00
chenguoqi
0f1da4a7e6 Fix missing go.env file 2024-06-12 10:54:39 +08:00
openeuler-ci-bot
6d5fcd542a
!343 在loongarch64架构上,使能external_linker 和 cgo。
From: @streamlet_hy 
Reviewed-by: @hcnbxx 
Signed-off-by: @hcnbxx
2024-04-23 02:35:02 +00:00
Huang Yang
6bf75f794e enable external_linker and cgo on loongarch64 2024-04-18 08:13:54 +00:00
openeuler-ci-bot
9d72342a3f
!341 backport: fix CVE-2023-45288
From: @hcnbxx 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2024-04-17 02:11:47 +00:00
hanchao
7c72730658 backport: fix CVE-2023-45288 2024-04-16 21:41:37 +08:00
openeuler-ci-bot
eacf858572
!324 enabling the patching function and fix CVE-2024-24784
From: @hcnbxx 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2024-03-28 09:31:42 +00:00
hanchao
7e7f663d4b backport: fix CVE-2024-24784 2024-03-28 18:35:18 +08:00
hanchao
24ce46ddd0 bugfix: enabling the patching function 2024-03-28 18:35:13 +08:00
openeuler-ci-bot
68cf0a0025
!318 [sync] PR-313: fix build error for loongarch64
From: @openeuler-sync-bot 
Reviewed-by: @hcnbxx, @jing-rui 
Signed-off-by: @jing-rui
2024-03-28 08:36:49 +00:00
zhangwenlong01
1628c33a1f fix build error for loongarch64
Signed-off-by: zhangwenlong01 <zhangwenlong@loongson.cn>
(cherry picked from commit ab448e9c4c9ac0f334fd4fc519e73c193597fcc8)
2024-03-28 09:18:26 +08:00
openeuler-ci-bot
a0fd601fe3
!305 backport: fix CVE-2024-24783,CVE-2024-24785,CVE-2023-45290,CVE-2023-45289
From: @hcnbxx 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2024-03-15 08:36:17 +00:00
hanchao
5f0e9e311b backport: fix CVE-2024-24783,CVE-2024-24785,CVE-2023-45290,CVE-2023-45289 2024-03-15 16:41:17 +08:00
openeuler-ci-bot
a0067aaa00
!284 Init support for ppc64le
From: @jiahua-yu 
Reviewed-by: @jing-rui, @hcnbxx 
Signed-off-by: @jing-rui
2023-12-15 12:27:43 +00:00
jiahua.yu
89e31d4307 Init support for arch ppc64le 2023-12-13 10:31:08 +08:00
openeuler-ci-bot
330b9ef9fb
!283 update: update to go1.21.4
From: @hcnbxx 
Reviewed-by: @zhangsong234, @jing-rui 
Signed-off-by: @jing-rui
2023-12-05 08:37:26 +00:00
hanchao
f514094aa2 upgrade to 1.21.4 2023-12-05 14:37:44 +08:00
openeuler-ci-bot
2d83be12d5
!246 permit requests with invalid Host headers
From: @wanglmb 
Reviewed-by: @hcnbxx, @jing-rui 
Signed-off-by: @jing-rui
2023-08-25 08:43:53 +00:00
wanglimin
007faac7bf permit requests with invalid Host headers 2023-08-24 18:17:26 +08:00
openeuler-ci-bot
83d85f3eda
!236 Update to version 1.20.7
From: @fundawang 
Reviewed-by: @jing-rui, @hcnbxx 
Signed-off-by: @jing-rui
2023-08-16 02:45:29 +00:00
root
c79107b0b3 1.20.7 2023-08-07 16:01:31 +08:00
openeuler-ci-bot
36208f464b
!235 Use local proxy for speed up
From: @fundawang 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2023-08-07 06:05:12 +00:00
Funda Wang
cf15318291 Use local proxy and sumdb for speed up 2023-07-31 19:55:14 +08:00
openeuler-ci-bot
e10a8672a7
!221 cvefix:fix CVE-2023-29406
From: @ChendongSun 
Reviewed-by: @hcnbxx, @jing-rui 
Signed-off-by: @jing-rui
2023-07-28 02:00:13 +00:00
sunchendong
f494134fe5 cvefix:fix CVE-2023-29406 2023-07-24 15:46:40 +08:00
openeuler-ci-bot
bc924969cc
!206 update: update to go1.20.5
From: @hcnbxx 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2023-07-05 01:25:26 +00:00
hanchao
3f8235235e update: update to go1.20.5 2023-07-03 19:23:36 +08:00
openeuler-ci-bot
1197529257
!199 [Backport] fix some CVE
From: @dayshappy 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2023-05-11 03:19:18 +00:00
zhangzhihui
f1b37a1aac [Backport] fix some CVE
CVE num	        upstream commit	                          openEuler patch
CVE-2023-29400	9db0e74f606b8afb28cc71d4b1c8b4ed24cabbf5	0016-release-branch.go1.19-html-template-emit-filterFails.patch
CVE-2023-24540	ce7bd33345416e6d8cac901792060591cafc2797	0015-release-branch.go1.19-html-template-handle-all-JS-wh.patch
CVE-2023-24539	e49282327b05192e46086bf25fd3ac691205fe80	0014-release-branch.go1.19-html-template-disallow-angle-b.patch
CVE-2023-24538	b1e3ecfa06b67014429a197ec5e134ce4303ad9b	0013-release-branch.go1.19-html-template-disallow-actions.patch
CVE-2023-24537	126a1d02da82f93ede7ce0bd8d3c51ef627f2104	0012-release-branch.go1.19-go-scanner-reject-large-line-a.patch
CVE-2023-24536	7917b5f31204528ea72e0629f0b7d52b35b27538	0011-release-branch.go1.19-mime-multipart-limit-parsed-mi.patch
CVE-2023-24536	7a359a651c7ebdb29e0a1c03102fce793e9f58f0	0010-release-branch.go1.19-net-textproto-mime-multipart-i.patch
CVE-2023-24536	ef41a4e2face45e580c5836eaebd51629fc23f15	0009-release-branch.go1.19-mime-multipart-avoid-excessive.patch
CVE-2023-24534	d6759e7a059f4208f07aa781402841d7ddaaef96	0008-release-branch.go1.19-net-textproto-avoid-overpredic.patch
CVE-2023-24532	639b67ed114151c0d786aa26e7faeab942400703	0007-release-branch.go1.19-crypto-internal-nistec-reduce-.patch
CVE-2022-41723	5c3e11bd0b5c0a86e5beffcd4339b86a902b21c3	0006-release-branch.go1.19-net-http-update-bundled-golang.patch
CVE-2022-41724	00b256e9e3c0fa02a278ec9dfc3e191e02ceaf80	0005-release-branch.go1.19-crypto-tls-replace-all-usages-.patch
CVE-2022-41725	5c55ac9bf1e5f779220294c843526536605f42ab	0004-release-branch.go1.19-mime-multipart-limit-memory-in.patch
CVE-2022-41722	3345ddca41f00f9ed6fc3c1a36f6e2bede02d7ff	0003-release-branch.go1.19-path-filepath-do-not-Clean-a-..patch

Signed-off-by: zhangzhihui <zhangzhihui@xfusion.com>
2023-05-10 17:38:15 +08:00
openeuler-ci-bot
f6dc7bf8c9
!198 fix CVE-2023-24534
From: @ChendongSun 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2023-05-10 06:50:50 +00:00
openeuler-ci-bot
a5e9b799de
!193 golang: fix CVE-2023-24538
From: @ChendongSun 
Reviewed-by: @hcnbxx, @jing-rui 
Signed-off-by: @jing-rui
2023-04-28 02:51:01 +00:00
ChendongSun
6d0f92022c fix CVE-2023-24534 2023-04-25 08:34:49 +08:00
openeuler-ci-bot
3ea66250a6
!191 golang: fix CVE-2023-24537
From: @ChendongSun 
Reviewed-by: @jing-rui 
Signed-off-by: @jing-rui
2023-04-20 12:04:29 +00:00