Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:37435

Опубликовано: 13 июл. 2026
Источник: rocky
Оценка: Important

Описание

Important: golang security, bug fix, and enhancement update

The golang packages provide the Go programming language compiler.

Security Fix(es):

  • golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)

  • os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)

Bug Fix(es) and Enhancement(s):

  • Update Go to version 1.26.5+1 [rhel-9.8.z] (JIRA:Rocky Linux-193476)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
golangx86_641.el9_8golang-1.26.5-1.el9_8.x86_64.rpm
golang-binx86_641.el9_8golang-bin-1.26.5-1.el9_8.x86_64.rpm
golang-docsnoarch1.el9_8golang-docs-1.26.5-1.el9_8.noarch.rpm
golang-miscnoarch1.el9_8golang-misc-1.26.5-1.el9_8.noarch.rpm
golang-racex86_641.el9_8golang-race-1.26.5-1.el9_8.x86_64.rpm
golang-srcnoarch1.el9_8golang-src-1.26.5-1.el9_8.noarch.rpm
golang-testsnoarch1.el9_8golang-tests-1.26.5-1.el9_8.noarch.rpm
go-toolsetx86_641.el9_8go-toolset-1.26.5-1.el9_8.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
18 дней назад

Important: golang security, bug fix, and enhancement update

oracle-oval
15 дней назад

ELSA-2026-37436: golang security, bug fix, and enhancement update (IMPORTANT)

oracle-oval
21 день назад

ELSA-2026-37435: golang security, bug fix, and enhancement update (IMPORTANT)

rocky
16 дней назад

Important: go-toolset:rhel8 security, bug fix, and enhancement update

oracle-oval
17 дней назад

ELSA-2026-38995: go-toolset:ol8 security, bug fix, and enhancement update (IMPORTANT)