Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Oracle Linux 9 ELSA-2024-2562 Critical: Golang Security Alerts

oracle
Calendar Grey May 8, 2024
Oracle Linux Logo Esm H88
Oracle Linux 9 refreshes crucial golang libraries to tackle significant security vulnerabilities and bolster system reliability.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[1.21.9-2] - Rebuilt for z-stream - Related: RHEL-24312 - Related: RHEL-28940 [1.21.9-1] - Fix CVE-2024-1394 - Fix CVE-2023-45288 - Resolves RHEL-24312 - Resolves RHEL-28940 [1.21.7-1] - Rebase to Go 1.21.7 - Set GOTOOLCHAIN to local - Resolves: RHEL-24334 - Resolves: RHEL-18364 - Resolves: RHEL-18365 [1.21.4-2] - Add release information [1.21.4-1] - Rebase to Go 1.21.4 - Resolves: RHEL-11871 [1.21.3-5] - Don't change GOPROXY/GOSUMDB - Related: RHEL-12624 [1.21.3-4] - Fix missing go.env in Go 1.21 - Related: RHEL-12624 [1.21.3-3] - Add missing strict fips runtime detection patch - Temporarily disable FIPS tests on aarch64 due to builder kernel bugs - Related: RHEL-12624 [1.21.3-2] - Rebase disable_static_tests_part2.patch to Go 1.21.3 - Related: RHEL-12624 [1.21.3-1] - Rebase to Go 1.21.3 - Resolves: RHEL-12624 [1.20.8-1] - Rebase to Go 1.20.8 - Remove fix-memory-leak-evp-sign-verify.patch as it is already included in the source - Resolves: RHEL-2775 [1.20.6-5] - Retire ...

Read the Full Advisory

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates//golang-1.21.9-2.el9_4.src.rpm

x86_64

golang-1.21.9-2.el9_4.x86_64.rpm golang-bin-1.21.9-2.el9_4.x86_64.rpm golang-docs-1.21.9-2.el9_4.noarch.rpm golang-misc-1.21.9-2.el9_4.noarch.rpm golang-src-1.21.9-2.el9_4.noarch.rpm golang-tests-1.21.9-2.el9_4.noarch.rpm go-toolset-1.21.9-2.el9_4.x86_64.rpm

aarch64

golang-1.21.9-2.el9_4.aarch64.rpm golang-bin-1.21.9-2.el9_4.aarch64.rpm golang-docs-1.21.9-2.el9_4.noarch.rpm golang-misc-1.21.9-2.el9_4.noarch.rpm golang-src-1.21.9-2.el9_4.noarch.rpm golang-tests-1.21.9-2.el9_4.noarch.rpm go-toolset-1.21.9-2.el9_4.aarch64.rpm

Severity
critical
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2023-45288 CVE-2023-45289 CVE-2023-45290 CVE-2024-1394 CVE-2024-24783 CVE-2024-24784 CVE-2024-24785

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here