-
Notifications
You must be signed in to change notification settings - Fork 2.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update golang.org/x/net to resolve CVE-2021-38561 #4291
Comments
Thanks for posting this issue. The PR looks good and will be merged in once CI tests pass. Also I'd like to mention that the |
Fixes #4291 by updating SDK's dependency on `golang.org/x/text` package to latest version CVE issue is addressed
|
Please fill out the sections below to help us address your issue.
Version of AWS SDK for Go?
All
Version of Go (
go version
)?All
What issue did you see?
CVE vulterability: https://vuln.whitesourcesoftware.com/vulnerability/CVE-2021-38561
golang.org/x/text package parsing issue, https://osv.dev/vulnerability/GO-2021-0113
Steps to reproduce
N/A
If you have an runnable example, please include it.
The text was updated successfully, but these errors were encountered: