Описание
Moderate: go-toolset:rhel8 security and bug fix update
Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.
Security Fix(es):
-
golang: encoding/pem: fix stack overflow in Decode (CVE-2022-24675)
-
golang: crypto/elliptic: panic caused by oversized scalar (CVE-2022-28327)
-
golang: syscall: faccessat checks wrong group (CVE-2022-29526)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
- Update to Go 1.17.10 (BZ#2091077)
Затронутые продукты
Rocky Linux 8
Ссылки на источники
Исправления
- Red Hat - 2077688
- Red Hat - 2077689
- Red Hat - 2084085