Path to this page:
Subject: CVS commit: pkgsrc/textproc/glow
From: Benny Siegert
Date: 2023-12-23 21:00:23
Message id: 20231223200023.52C49FA42@cvs.NetBSD.org
Log Message:
glow: update to 1.5.1
- bugfixes
Also manually fix the following vulnerability:
Vulnerability #1: GO-2023-2402
Man-in-the-middle attacker can compromise integrity of secure channel in
golang.org/x/crypto
More info: https://pkg.go.dev/vuln/GO-2023-2402
Module: golang.org/x/crypto
Found in: golang.org/x/crypto@v0.0.0-20220525230936-793ad666bf5e
Fixed in: golang.org/x/crypto@v0.17.0
Files: