Upgrade golang.org/x/crypto from v0.38.0 to v0.48.0 to resolve CVE-2025-47913 (GO-2025-4116), a denial-of-service vulnerability in golang.org/x/crypto/ssh/agent where SSH clients receiving SSH_AGENT_SUCCESS when expecting a typed response will panic and cause early termination of the client process. The fix was introduced in v0.43.0. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| github.com | ||
| go.opentelemetry.io | ||
| go.uber.org | ||
| golang.org/x | ||
| google.golang.org | ||
| gopkg.in | ||
| nhooyr.io/websocket | ||
| zombiezen.com/go/capnproto2 | ||
| modules.txt | ||