First published: Tue Dec 15 2020(Updated: )
Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.<br>Security Fix(es):<br><li> golang: default Content-Type setting in net/http/cgi and net/http/fcgi could cause XSS (CVE-2020-24553)</li> <li> golang: math/big: panic during recursive division of very large numbers (CVE-2020-28362)</li> <li> golang: malicious symbol names can lead to code execution at build time (CVE-2020-28366)</li> <li> golang: improper validation of cgo flags can lead to code execution at build time (CVE-2020-28367)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/delve | <1.4.1-1.module+el8.3.0+7840+63dfb1ed | 1.4.1-1.module+el8.3.0+7840+63dfb1ed |
redhat/go-toolset | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/delve | <1.4.1-1.module+el8.3.0+7840+63dfb1ed | 1.4.1-1.module+el8.3.0+7840+63dfb1ed |
redhat/delve-debuginfo | <1.4.1-1.module+el8.3.0+7840+63dfb1ed | 1.4.1-1.module+el8.3.0+7840+63dfb1ed |
redhat/delve-debugsource | <1.4.1-1.module+el8.3.0+7840+63dfb1ed | 1.4.1-1.module+el8.3.0+7840+63dfb1ed |
redhat/go-toolset | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-bin | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-docs | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-misc | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-race | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-src | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-tests | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-bin | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/go-toolset | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/golang-bin | <1.14.12-1.module+el8.3.0+8784+380394dc | 1.14.12-1.module+el8.3.0+8784+380394dc |
redhat/go-toolset | <1.14.12-1.module+el8.3.0+8784+380394dc.aa | 1.14.12-1.module+el8.3.0+8784+380394dc.aa |
redhat/golang | <1.14.12-1.module+el8.3.0+8784+380394dc.aa | 1.14.12-1.module+el8.3.0+8784+380394dc.aa |
redhat/golang-bin | <1.14.12-1.module+el8.3.0+8784+380394dc.aa | 1.14.12-1.module+el8.3.0+8784+380394dc.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.