Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 550
Alerts This Week
Warning Icon 1 550

Debian DSA-4848-1 Critical: Golang Denial of Service Risks

debian
Calendar Grey February 8, 2021
Scroller Debian
Mitigating vulnerabilities in golang-1.11 that could lead to service interruptions and misleading outputs.
Multiple security issues were discovered in the implementation of the Go programming language, which could result in denial of service and the P-224 curve implementation could gene...

Summary

Multiple security issues were discovered in the implementation of the
Go programming language, which could result in denial of service and
the P-224 curve implementation could generate incorrect outputs.

For the stable distribution (buster), these problems have been fixed in
version 1.11.6-1+deb10u4.

We recommend that you upgrade your golang-1.11 packages.

For the detailed security status of golang-1.11 please refer to
its security tracker page at:


Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: golang-1.11
CVE ID: CVE-2020-7919 CVE-2020-15586 CVE-2020-16845 CVE-2021-3114

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.