diff options
| author | Praveen Kumar <praveen.kumar@windriver.com> | 2025-06-25 11:28:54 +0530 |
|---|---|---|
| committer | Steve Sakoman <steve@sakoman.com> | 2025-07-07 07:42:58 -0700 |
| commit | b4562b5fca01d40057b2962bca2cc6b1f395e43e (patch) | |
| tree | 59066d51eb5f181d70d2815e43f44d27b34255c8 /LICENSE | |
| parent | b8f8125f05e8ece078ba6bf01eebb2900cf2f9bf (diff) | |
| download | poky-b4562b5fca01d40057b2962bca2cc6b1f395e43e.tar.gz | |
go: fix CVE-2025-4673
Proxy-Authorization and Proxy-Authenticate headers persisted on
cross-origin redirects potentially leaking sensitive information.
Reference:
https://nvd.nist.gov/vuln/detail/CVE-2025-4673
Upstream-patch:
https://github.com/golang/go/commit/b897e97c36cb62629a458bc681723ca733404e32
(From OE-Core rev: 72279bbc1ff2d85563c5245195435f078c5d1a68)
Signed-off-by: Praveen Kumar <praveen.kumar@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'LICENSE')
0 files changed, 0 insertions, 0 deletions
