3 Commits

Author SHA256 Message Date
9d4beb88b0 - GHSA-4c4x-jm2x-pf9j / CVE-2026-24117 / bsc#1257135: Fixed Server-Side Request Forgery (SSRF) via provided public key URL
- GHSA-273p-m2cw-6833 / CVE-2026-23831 / bsc#1257132: Fixed  lack of input validation thatg can cause a thread crash
  - GHSA-j5w8-q4qc-rx2x / CVE-2025-58181 / bsc#1253817: Fixed golang.org/x/crypto/ssh: invalidated number of mechanisms can cause unbounded memory consumption

OBS-URL: https://build.opensuse.org/package/show/security/rekor?expand=0&rev=64
2026-01-23 15:39:04 +00:00
d684df5576 This release fixes the following security issues:
- GHSA-4c4x-jm2x-pf9j / CVE-2026-24117  / 1257135: Fixed Server-Side Request Forgery (SSRF) via provided public key URL
  - GHSA-273p-m2cw-6833 / CVE-2026-23831 / 1257132: Fixed  lack of input validation thatg can cause a thread crash

OBS-URL: https://build.opensuse.org/package/show/security/rekor?expand=0&rev=63
2026-01-23 13:16:36 +00:00
d31fa0bb88 update to 1.5.0
OBS-URL: https://build.opensuse.org/package/show/security/rekor?expand=0&rev=62
2026-01-22 10:44:06 +00:00