Skip to content

Commit 9d4e8d8

Browse files
authored
Add security-4703 release notes to GHES versions (#25803)
1 parent 79c4807 commit 9d4e8d8

3 files changed

Lines changed: 6 additions & 0 deletions

File tree

data/release-notes/enterprise-server/3-1/18.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,7 @@
11
date: '2022-03-01'
22
sections:
3+
security_fixes:
4+
- "HIGH: An integer overflow vulnerability was identified in GitHub's markdown parser that could potentially lead to information leaks and RCE. This vulnerability was reported through the GitHub Bug Bounty program by Felix Wilhelm of Google's Project Zero and has been assigned CVE-2022-24724."
35
bugs:
46
- Upgrades could sometimes fail if a high-availability replica's clock was out of sync with the primary.
57
- OAuth Applications created after September 1st, 2020 were not able to use the [Check an Authorization](https://docs.github.com/en/enterprise-server@3.1/rest/reference/apps#check-an-authorization) API endpoint.

data/release-notes/enterprise-server/3-2/10.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,7 @@
11
date: '2022-03-01'
22
sections:
3+
security_fixes:
4+
- "HIGH: An integer overflow vulnerability was identified in GitHub's markdown parser that could potentially lead to information leaks and RCE. This vulnerability was reported through the GitHub Bug Bounty program by Felix Wilhelm of Google's Project Zero and has been assigned CVE-2022-24724."
35
bugs:
46
- Upgrades could sometimes fail if a high-availability replica's clock was out of sync with the primary.
57
- OAuth Applications created after September 1st, 2020 were not able to use the [Check an Authorization](https://docs.github.com/en/enterprise-server@3.2/rest/reference/apps#check-an-authorization) API endpoint.

data/release-notes/enterprise-server/3-3/5.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,7 @@
11
date: '2022-03-01'
22
sections:
3+
security_fixes:
4+
- "HIGH: An integer overflow vulnerability was identified in GitHub's markdown parser that could potentially lead to information leaks and RCE. This vulnerability was reported through the GitHub Bug Bounty program by Felix Wilhelm of Google's Project Zero and has been assigned CVE-2022-24724."
35
bugs:
46
- Upgrades could sometimes fail if a high-availability replica's clock was out of sync with the primary.
57
- OAuth Applications created after September 1st, 2020 were not able to use the [Check an Authorization](https://docs.github.com/en/enterprise-server@3.3/rest/reference/apps#check-an-authorization) API endpoint.

0 commit comments

Comments
 (0)