RHSA-2023:3323: Important: go-toolset-1.19 and go-toolset-1.19-golang security update
Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.Security Fix(es): golang: html/template: improper handling of JavaScript whitespace (CVE-2023-24540) golang: go/parser: Infinite loop in parsing (CVE-2023-24537) golang: html/template: backticks not treated as string delimiters (CVE-2023-24538) golang: html/template: improper sanitization of CSS values (CVE-2023-24539) golang: html/template: improper handling of empty HTML attributes (CVE-2023-29400) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Important: go-toolset-1.19 and go-toolset-1.19-golang security update
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:3323?
The severity of RHSA-2023:3323 is high with a severity value of 7.
How do I fix RHSA-2023:3323?
To fix RHSA-2023:3323, apply the security update provided by Red Hat.
What is the affected software for RHSA-2023:3323?
The affected software for RHSA-2023:3323 is go-toolset-1.19 and go-toolset-1.19-golang.
Where can I find more information about RHSA-2023:3323?
You can find more information about RHSA-2023:3323 on the Red Hat website.
Are there any known vulnerabilities related to RHSA-2023:3323?
Yes, there are known vulnerabilities related to RHSA-2023:3323. Please refer to the reference links provided for more details.