[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RLSA-2021:4156 --- golang

ID: oval:org.secpod.oval:def:4501222Date: (C)2023-04-03   (M)2023-11-10
Class: PATCHFamily: unix




Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang. The following packages have been upgraded to a later upstream version: golang . Security Fix: * golang: net: lookup functions may return invalid host names * golang: net/http/httputil: ReverseProxy forwards connection headers if first one is empty * golang: math/big.Rat: may cause a panic or an unrecoverable fatal error if passed inputs with very large exponents * golang: net/http/httputil: panic due to racy read of persistConn after handler panic For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section.

Platform:
Rocky Linux 8
Product:
golang
delve
go-toolset
Reference:
RLSA-2021:4156
CVE-2021-33195
CVE-2021-33197
CVE-2021-33198
CVE-2021-36221
CVE    4
CVE-2021-33197
CVE-2021-36221
CVE-2021-33195
CVE-2021-33198
...
CPE    3
cpe:/a:golang:golang
cpe:/a:go-delve:golang
cpe:/a:golang:go-toolset

© SecPod Technologies