Update Go runtime to 1.17.13 to address CVE-2022-32189. Full diff: https://github.com/golang/go/compare/go1.17.12...go1.17.13 -------------------------------------------------------- From the security announcement: https://groups.google.com/g/golang-announce/c/YqYYG87xB10 We have just released Go versions 1.18.5 and 1.17.13, minor point releases. These minor releases include 1 security fixes following the security policy: encoding/gob & math/big: decoding big.Float and big.Rat can panic Decoding big.Float and big.Rat types can panic if the encoded message is too short. This is CVE-2022-32189 and Go issue https://go.dev/issue/53871. View the release notes for more information: https://go.dev/doc/devel/release#go1.17.13 Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
24 lines
466 B
YAML
24 lines
466 B
YAML
version: "{build}"
|
|
|
|
clone_folder: c:\gopath\src\github.com\docker\cli
|
|
|
|
environment:
|
|
GOPATH: c:\gopath
|
|
GOVERSION: 1.17.13
|
|
DEPVERSION: v0.4.1
|
|
|
|
install:
|
|
- rmdir c:\go /s /q
|
|
- appveyor DownloadFile https://storage.googleapis.com/golang/go%GOVERSION%.windows-amd64.msi
|
|
- msiexec /i go%GOVERSION%.windows-amd64.msi /q
|
|
- go version
|
|
- go env
|
|
|
|
deploy: false
|
|
|
|
build_script:
|
|
- ps: .\scripts\make.ps1 -Binary
|
|
|
|
test_script:
|
|
- ps: .\scripts\make.ps1 -TestUnit
|