RHSA-2024:5075: Moderate: golang security update
Moderate: golang security update
Other sources
The golang packages provide the Go programming language compiler.Security Fix(es): golang: net/http: memory exhaustion in Request.ParseMultipartForm (CVE-2023-45290) golang: net/netip: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses (CVE-2024-24790) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:5075?
The severity of RHSA-2024:5075 is rated as Moderate.
How do I fix RHSA-2024:5075?
To fix RHSA-2024:5075, upgrade to golang version 1.19.13-9.el9_2 or later.
Which software packages are affected by RHSA-2024:5075?
Affected packages include golang, golang-bin, golang-docs, golang-misc, golang-race, golang-src, and golang-tests.
Is RHSA-2024:5075 applicable to all architectures?
RHSA-2024:5075 is applicable to various architectures including x86_64 and ppc64le.
What is the main purpose of the RHSA-2024:5075 update?
The RHSA-2024:5075 update addresses security vulnerabilities in the Golang programming language.