- Add update-crypto-cve-2025-47913.patch: Update golang.org/x/crypto from v0.37.0 to v0.43.0 to fix SSH agent DoS vulnerability where SSH clients receiving SSH_AGENT_SUCCESS when expecting a typed response will panic and cause early termination of the client process. Affects pkg/runner/action_cache.go which uses SSH agent functions via go-git. - Regenerate vendor.tar.gz with updated dependencies OBS-URL: https://build.opensuse.org/package/show/devel:tools:scm/act?expand=0&rev=26
2.0 KiB
2.0 KiB