Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian DSA-4848-1 Critical: Golang Denial of Service Risks

debian
Calendar Grey February 8, 2021
Debian Logo
Mitigating vulnerabilities in golang-1.11 that could lead to service interruptions and misleading outputs.
Multiple security issues were discovered in the implementation of the Go programming language, which could result in denial of service and the P-224 curve implementation could gene...

Summary

Multiple security issues were discovered in the implementation of the
Go programming language, which could result in denial of service and
the P-224 curve implementation could generate incorrect outputs.

For the stable distribution (buster), these problems have been fixed in
version 1.11.6-1+deb10u4.

We recommend that you upgrade your golang-1.11 packages.

For the detailed security status of golang-1.11 please refer to
its security tracker page at:


Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: golang-1.11
CVE ID: CVE-2020-7919 CVE-2020-15586 CVE-2020-16845 CVE-2021-3114

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here