First published: Mon Jan 23 2023(Updated: )
Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.<br>The golang packages provide the Go programming language compiler.<br>Security Fix(es):<br><li> golang: archive/tar: unbounded memory consumption when reading headers (CVE-2022-2879)</li> <li> golang: net/http/httputil: ReverseProxy should not forward unparseable query parameters (CVE-2022-2880)</li> <li> golang: regexp/syntax: limit memory used by parsing regexps (CVE-2022-41715)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Bug Fix(es):<br><li> Internal linking fails on ppc64le (BZ#2144547)</li> <li> crypto testcases fail on golang on s390x [rhel-9] (BZ#2149311)</li>
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/go-toolset | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/go-toolset | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-bin | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-docs | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-misc | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-race | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-src | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-tests | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-bin | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/go-toolset | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/golang-bin | <1.18.9-1.el9_1 | 1.18.9-1.el9_1 |
redhat/go-toolset | <1.18.9-1.el9_1.aa | 1.18.9-1.el9_1.aa |
redhat/golang | <1.18.9-1.el9_1.aa | 1.18.9-1.el9_1.aa |
redhat/golang-bin | <1.18.9-1.el9_1.aa | 1.18.9-1.el9_1.aa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.