Security update for gitea-tea
This update for gitea-tea fixes the following issues:
- gitea-te: update newer dependencies to fix security issues (boo#1235367 boo#1239493 boo#1234598)
-
Submitted by
Richard Rahl (rrahl0)
Fixed bugs
bnc#1239493
VUL-0: CVE-2025-22869: gitea-tea: golang.org/x/crypto/ssh: Denial of Service in the Key Exchange of golang.org/x/crypto/ssh
bnc#1234598
VUL-0: CVE-2024-45337: gitea-tea: golang.org/x/crypto/ssh: Misuse of ServerConfig.PublicKeyCallback may cause authorization bypass in golang.org/x/crypto
bnc#1235367
VUL-0: CVE-2024-45338: gitea-tea: golang.org/x/net/html: denial of service due to non-linear parsing of case-insensitive content
CVE-2024-45338
VUL-0: CVE-2024-45338: gitea-tea: golang.org/x/net/html: denial of service due to non-linear parsing of case-insensitive content
CVE-2024-45337
VUL-0: CVE-2024-45338: gitea-tea: golang.org/x/net/html: denial of service due to non-linear parsing of case-insensitive content
CVE-2025-22869
VUL-0: CVE-2024-45338: gitea-tea: golang.org/x/net/html: denial of service due to non-linear parsing of case-insensitive content