pkgsrc/lang/go
bsiegert bba0363e5d SECURITY: Update Go to 1.8.2, fixing CVE-2017-8932,
carry bug in x86-64 P-256.

A security-related issue was recently reported in Go's crypto/elliptic package.
To address this issue, we have just released Go 1.7.6 and Go 1.8.2.

The Go team would like to thank Vlad Krasnov and Filippo Valsorda at Cloudflare
for reporting the issue and providing a fix.

The issue affects Go's P-256 implementation on the 64-bit x86 architecture.

This is CVE-2017-8932 and was addressed by this change:
https://golang.org/cl/41070, tracked in this issue:
https://golang.org/issue/20040
2017-05-25 09:06:43 +00:00
..
patches Align previous patch with upstream trunk. Functionally, fix remains the same. 2017-05-19 18:50:41 +00:00
DESCR
distinfo SECURITY: Update Go to 1.8.2, fixing CVE-2017-8932, 2017-05-25 09:06:43 +00:00
go-package.mk Do not take the basename of GO_DIST_BASE when it is overridden. Needed for 2017-03-20 22:33:21 +00:00
Makefile SECURITY: Update Go to 1.8.2, fixing CVE-2017-8932, 2017-05-25 09:06:43 +00:00
PLIST Update to 1.8.1 2017-04-09 08:23:43 +00:00
PLIST.Linux Add Linux specific PLIST 2016-03-09 07:19:55 +00:00
PLIST.SunOS The x/net/lif package seems to be SunOS only at the moment, fix PLIST. 2017-03-20 15:08:39 +00:00
version.mk SECURITY: Update Go to 1.8.2, fixing CVE-2017-8932, 2017-05-25 09:06:43 +00:00