Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:3772

Опубликовано: 29 июл. 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: go-toolset:rhel8 security update

Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang.

Security Fix(es):

  • golang: crypto/x509: crypto/x509: usage of IPv6 zone IDs can bypass URI name constraints (CVE-2024-45341)

  • golang: net/http: net/http: sensitive headers incorrectly sent after cross-domain redirect (CVE-2024-45336)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

Связанные CVE

Связанные уязвимости

suse-cvrf
около 1 года назад

Security update for go1.22

suse-cvrf
около 1 года назад

Security update for go1.23

oracle-oval
10 месяцев назад

ELSA-2025-3772: go-toolset:ol8 security update (MODERATE)

suse-cvrf
9 месяцев назад

Security update for go1.22-openssl

rocky
4 месяца назад

Moderate: delve and golang security update