Skip to content

[release-branch.go1.27] Upgrade go-crypto-openssl - #2556

Merged
Quim Muntal (qmuntal) merged 1 commit into
microsoft/release-branch.go1.27from
dev/qmuntal/upgrade-openssl-go1.27
Oct 8, 2026
Merged

Quim Muntal (qmuntal) merged 1 commit into
microsoft/release-branch.go1.27from
dev/qmuntal/upgrade-openssl-go1.27

Conversation

@qmuntal

@qmuntal Quim Muntal (qmuntal) commented Oct 8, 2026 •

Copy link
Copy Markdown
Member

Updates Go 1.27 to go-crypto-openssl v0.5.1-0.20261008093524-2330498b45b3, the latest commit on the ms-go1.27-support branch: microsoft/go-crypto-openssl@2330498.

Updates cryptobackend module metadata and regenerates the Go 1.27 standard-library vendor patch. This PR is based on microsoft/release-branch.go1.27.

Vendored dependency changes: microsoft/go-crypto-openssl@5fd0483...2330498

Tests not run, as requested.

@qmuntal
Quim Muntal (qmuntal) requested a review from a team as a code owner October 8, 2026 12:12
Copilot AI balanced review requested due to automatic review settings October 8, 2026 12:12
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 1 pipeline(s).
There may be pipelines that require an authorized user to comment /azp run to run.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🟡 Changes recommended

The selected revision regresses thread-safe retrieval of Unix loader errors in both dlopen and dlclose.

1 open finding
What changed in this PR

Updates the OpenSSL crypto backend to the latest Go 1.27 support revision.

Changes:

  • Updates cryptobackend module metadata and checksums.
  • Regenerates the standard-library vendor patch.
File Description
cryptobackend/​go.mod Updates the OpenSSL dependency version.
cryptobackend/​go.sum Updates dependency checksums.
patches/​0001-Vendor-external-dependencies.patch Regenerates vendored OpenSSL sources and metadata.

🧠 Review effort: Balanced


Give feedback about Copilot approvals in this survey to enter a drawing for a $150 gift card.

Comment thread patches/0001-Vendor-external-dependencies.patch
Update to v0.5.1-0.20261008093524-2330498b45b3 from ms-go1.27-support and regenerate the Go 1.27 vendor patch.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot-Session: 5ebc945f-a54a-4a12-864e-f264d91d3dd0
@qmuntal Quim Muntal (qmuntal) changed the title Upgrade go-crypto-openssl to latest Go 1.27 support commit [release-branch.go1.27] Upgrade go-crypto-openssl Oct 8, 2026
@qmuntal
Quim Muntal (qmuntal) force-pushed the dev/qmuntal/upgrade-openssl-go1.27 branch from e34f998 to aef3d81 Compare October 8, 2026 12:18
@qmuntal
Quim Muntal (qmuntal) changed the base branch from microsoft/main to microsoft/release-branch.go1.27 October 8, 2026 12:18

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🔵 Needs a closer look

The untested update changes cryptographic, FIPS, unsafe-pointer, and native-call behavior.

0 open findings

1 resolved since last review

🧠 Review effort: Balanced


Give feedback about Copilot approvals in this survey to enter a drawing for a $150 gift card.

@qmuntal
Quim Muntal (qmuntal) merged commit 1418c36 into microsoft/release-branch.go1.27 Oct 8, 2026
61 of 66 checks passed
@qmuntal
Quim Muntal (qmuntal) deleted the dev/qmuntal/upgrade-openssl-go1.27 branch October 8, 2026 13:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants