Описание
ELSA-2026-19139: go-fdo-client security update (IMPORTANT)
[1.0.0-4]
- Rebuild to fix CVE-2026-32282 and CVE-2025-68121
[1.0.0-3]
- Rebuild to fix CVE-2026-32283
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
go-fdo-client
1.0.0-4.el10_2
Oracle Linux x86_64
go-fdo-client
1.0.0-4.el10_2
Связанные CVE
Связанные уязвимости
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
If one side of the TLS connection sends multiple key update messages post-handshake in a single record, the connection can deadlock, causing uncontrolled consumption of resources. This can lead to a denial of service. This only affects TLS 1.3.
Unauthenticated TLS 1.3 KeyUpdate record can cause persistent connection retention and DoS in crypto/tls
If one side of the TLS connection sends multiple key update messages p ...