File _patchinfo of Package patchinfo.39315

<patchinfo incident="39315">
  <issue tracker="cve" id="2025-22868"/>
  <issue tracker="cve" id="2025-22870"/>
  <issue tracker="bnc" id="1238681">VUL-0: CVE-2025-22870: ignition: golang.org/x/net/http/httpproxy: proxy bypass using IPv6 zone IDs</issue>
  <issue tracker="bnc" id="1239192">VUL-0: CVE-2025-22868: ignition: golang.org/x/oauth2/jws: Unexpected memory consumption during token parsing in golang.org/x/oauth2</issue>
  <packager>fos</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for ignition</summary>
  <description>This update for ignition fixes the following issues:

- CVE-2025-22870: golang.org/x/net/http/httpproxy: proxy bypass using IPv6 zone IDs (bsc#1238681).
- CVE-2025-22868: golang.org/x/oauth2/jws: Unexpected memory consumption during token parsing in golang.org/x/oauth2 (bsc#1239192).
</description>
</patchinfo>
openSUSE Build Service is sponsored by