Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:37436

Опубликовано: 13 июл. 2026
Источник: rocky
Оценка: Important

Описание

Important: golang security, bug fix, and enhancement update

The golang packages provide the Go programming language compiler.

Security Fix(es):

  • golang.org/x/net/idna: golang: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing (CVE-2026-39821)

  • os: golang: Go os.Root: Symlink following vulnerability allows directory traversal (CVE-2026-39822)

Bug Fix(es) and Enhancement(s):

  • Update Go to version 1.26.5+1 [rhel-10.2.z] (JIRA:Rocky Linux-193473)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
golang-docsnoarch1.el10_2golang-docs-1.26.5-1.el10_2.noarch.rpm
golang-miscnoarch1.el10_2golang-misc-1.26.5-1.el10_2.noarch.rpm
golang-testsnoarch1.el10_2golang-tests-1.26.5-1.el10_2.noarch.rpm
golang-srcnoarch1.el10_2golang-src-1.26.5-1.el10_2.noarch.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
18 дней назад

Important: golang security, bug fix, and enhancement update

oracle-oval
15 дней назад

ELSA-2026-37436: golang security, bug fix, and enhancement update (IMPORTANT)

oracle-oval
21 день назад

ELSA-2026-37435: golang security, bug fix, and enhancement update (IMPORTANT)

rocky
16 дней назад

Important: go-toolset:rhel8 security, bug fix, and enhancement update

oracle-oval
17 дней назад

ELSA-2026-38995: go-toolset:ol8 security, bug fix, and enhancement update (IMPORTANT)