-
Task
-
Resolution: Done
-
Normal
-
ACM 2.10.0, ACM 2.9.0, ACM 2.8.1, ACM 2.11.0
-
None
-
1
-
False
-
None
-
False
-
-
-
Installer Sprint 2024-36
-
No
In order to fix CVE-2023-45288, it is required to upgrade `golang.org/x/net` to v0.23.0+ for multiclusterhub-operator repo. It should cover the releases below:
- ACM 2.11 / MCE 2.6
- ACM 2.10 / MCE 2.5
- ACM 2.9 / MCE 2.4
- ACM 2.8 / MCE 2.3
More information can be found https://redhat-internal.slack.com/archives/G010RS588CC/p1717614506464539?thread_ts=1717511402.116909&cid=G010RS588CC
- is cloned by
-
ACM-12137 Upgrade golang.org/x/net of backplane-operator repo
- Closed