Skip to content

Upgrade go-socks5 to v0.1.3 to fix UDP ASSOCIATE binding to all interfaces - #224

Merged
windtf merged 1 commit into
masterfrom
claude/go-socks5-udp-associate-myb0qj
Sep 17, 2026
Merged

windtf merged 1 commit into
masterfrom
claude/go-socks5-udp-associate-myb0qj

Conversation

@windtf

@windtf windtf commented Sep 17, 2026

Copy link
Copy Markdown
Owner

v0.0.5 unconditionally bound the UDP ASSOCIATE relay socket to
0.0.0.0, which could let anyone on the local network piggyback
through the WireGuard tunnel by sending UDP packets to the bound
port. Fixed upstream in v0.1.0+, which binds using the client's TCP
connection's local address instead. UDP ASSOCIATE remains enabled.

Co-Authored-By: Claude Sonnet 5 noreply@anthropic.com
Claude-Session: https://claude.ai/code/session_01BrqdXDvBRhG5SFVQ5xZthL

…faces

v0.0.5 unconditionally bound the UDP ASSOCIATE relay socket to
0.0.0.0, which could let anyone on the local network piggyback
through the WireGuard tunnel by sending UDP packets to the bound
port. Fixed upstream in v0.1.0+, which binds using the client's TCP
connection's local address instead. UDP ASSOCIATE remains enabled.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01BrqdXDvBRhG5SFVQ5xZthL
@windtf
windtf merged commit a4c5269 into master Sep 17, 2026
19 of 20 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants