golang: Update to 1.14.7
authorJeffery To <redacted>
Tue, 11 Aug 2020 20:38:38 +0000 (04:38 +0800)
committerJeffery To <redacted>
Tue, 11 Aug 2020 20:38:38 +0000 (04:38 +0800)
This includes a fix for CVE-2020-16845 (encoding/binary: ReadUvarint and
ReadVarint can read an unlimited number of bytes from invalid inputs).

Signed-off-by: Jeffery To <redacted>
lang/golang/golang/Makefile

index 9141fede8f292bdc89b078417ea92d58affc662d..320ed781241955cc9eaa625d448b47e9036f957f 100644 (file)
@@ -8,7 +8,7 @@
 include $(TOPDIR)/rules.mk
 
 GO_VERSION_MAJOR_MINOR:=1.14
-GO_VERSION_PATCH:=6
+GO_VERSION_PATCH:=7
 
 PKG_NAME:=golang
 PKG_VERSION:=$(GO_VERSION_MAJOR_MINOR)$(if $(GO_VERSION_PATCH),.$(GO_VERSION_PATCH))
@@ -20,7 +20,7 @@ GO_SOURCE_URLS:=https://dl.google.com/go/ \
 
 PKG_SOURCE:=go$(PKG_VERSION).src.tar.gz
 PKG_SOURCE_URL:=$(GO_SOURCE_URLS)
-PKG_HASH:=73fc9d781815d411928eccb92bf20d5b4264797be69410eac854babe44c94c09
+PKG_HASH:=064392433563660c73186991c0a315787688e7c38a561e26647686f89b6c30e3
 
 PKG_MAINTAINER:=Jeffery To <jeffery.to@gmail.com>
 PKG_LICENSE:=BSD-3-Clause
git clone https://git.99rst.org/PROJECT