@@ -5,6 +5,53 @@ All notable changes to this project will be documented in this file.
5
5
The format is based on [ Keep a Changelog] ( http://keepachangelog.com/en/1.0.0/ )
6
6
and this project adheres to [ Semantic Versioning] ( http://semver.org/spec/v2.0.0.html ) .
7
7
8
+ ## [ 2.12.6] - 2023-07-12
9
+
10
+ ### Fixed
11
+
12
+ - ` cartridge enter ` now does not crash on ` \q ` input.
13
+
14
+ ### Changed
15
+
16
+ - Updated the go version used to build the binary, that fixes known security issues.
17
+ List of List of known issues:
18
+
19
+ +-------------------+---------------------------------------+----------------+
20
+ | CVE | Infected Version | Fix Version |
21
+ +-------------------+---------------------------------------+----------------+
22
+ | CVE-2023 -24538 | < 1.19.8,1.20.0-0 ≤ Ver < 1.20.3 | 1.19.8,1.20.3 |
23
+ | CVE-2023 -24540 | < 1.19.9,1.20.0-0 ≤ Ver < 1.20.4 | 1.19.9,1.20.4 |
24
+ | CVE-2022 -30635 | < 1.17.12,1.18.0-0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
25
+ | CVE-2022 -28131 | < 1.17.12,1.18.0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
26
+ | CVE-2022 -30580 | < 1.17.11,1.18.0-0 ≤ Ver < 1.18.3 | 1.17.11,1.18.3 |
27
+ | CVE-2023 -24534 | < 1.19.8,1.20.0-0 ≤ Ver < 1.20.3 | 1.19.8,1.20.3 |
28
+ | CVE-2022 -41724 | < 1.19.6,1.20.0-0 ≤ Ver < 1.20.1 | 1.19.6,1.20.1 |
29
+ | CVE-2022 -30633 | < 1.17.12,1.18.0-0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
30
+ | CVE-2022 -30630 | < 1.17.12,1.18.0-0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
31
+ | CVE-2022 -29804 | < 1.17.11,1.18.0 ≤ Ver < 1.18.3 | 1.17.11,1.18.3 |
32
+ | CVE-2023 -24539 | < 1.19.9,1.20.0-0 ≤ Ver < 1.20.4 | 1.19.9,1.20.4 |
33
+ | CVE-2022 -41725 | < 1.19.6,1.20.0-0 ≤ Ver < 1.20.1 | 1.19.6,1.20.1 |
34
+ | CVE-2023 -29400 | < 1.19.9,1.20.0-0 ≤ Ver < 1.20.4 | 1.19.9,1.20.4 |
35
+ | CVE-2022 -41722 | < 1.19.6,1.20.0-0 ≤ Ver < 1.20.1 | 1.19.6,1.20.1 |
36
+ | CVE-2022 -32189 | < 1.17.13,1.18.0-0 ≤ Ver < 1.18.5 | 1.17.13,1.18.5 |
37
+ | CVE-2022 -2880 | < 1.18.7,1.19.0-0 ≤ Ver < 1.19.2 | 1.18.7,1.19.2 |
38
+ | CVE-2022 -30631 | < 1.17.12,1.18.0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
39
+ | CVE-2022 -41716 | < 1.18.8,1.19.0-0 ≤ Ver < 1.19.3 | 1.18.8,1.19.3 |
40
+ | CVE-2022 -2879 | < 1.18.7,1.19.0-0 ≤ Ver < 1.19.2 | 1.18.7,1.19.2 |
41
+ | CVE-2022 -41715 | < 1.18.7,1.19.0-0 ≤ Ver < 1.19.2 | 1.18.7,1.19.2 |
42
+ | CVE-2023 -24536 | < 1.19.8,1.20.0-0 ≤ Ver < 1.20.3 | 1.19.8,1.20.3 |
43
+ | CVE-2022 -30634 | < 1.17.11,1.18.0-0 ≤ Ver < 1.18.3 | 1.17.11,1.18.3 |
44
+ | CVE-2022 -30632 | < 1.17.12,1.18.0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
45
+ | CVE-2022 -41720 | < 1.18.9,1.19.0-0 ≤ Ver < 1.19.4 | 1.18.9,1.19.4 |
46
+ | CVE-2023 -24537 | < 1.19.8,1.20.0-0 ≤ Ver < 1.20.3 | 1.19.8,1.20.3 |
47
+ | CVE-2022 -32148 | < 1.17.12,1.18.0-0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
48
+ | CVE-2023 -24532 | < 1.19.7,1.20.0-0 ≤ Ver < 1.20.2 | 1.19.7,1.20.2 |
49
+ | CVE-2022 -1705 | < 1.17.12,1.18.0-0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
50
+ | CVE-2022 -1962 | < 1.17.12,1.18.0 ≤ Ver < 1.18.4 | 1.17.12,1.18.4 |
51
+ | CVE-2022 -30636 | ≤ 1.18.3 | 1.18.4 |
52
+ | CVE-2022 -30629 | < 1.17.11,1.18.0-0 ≤ Ver < 1.18.3 | 1.17.11,1.18.3 |
53
+ +-------------------+---------------------------------------+----------------+
54
+
8
55
## [ 2.12.5] - 2023-04-25
9
56
10
57
### Changed
@@ -16,7 +63,6 @@ and this project adheres to [Semantic Versioning](http://semver.org/spec/v2.0.0.
16
63
### Fixed
17
64
18
65
- Fixed support for instance names as application name and names with dots.
19
- - ` cartridge enter ` now does not crash on ` \q ` input.
20
66
21
67
## [ 2.12.4] - 2022-12-31
22
68
0 commit comments