Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

SUSE Linux 16.0 go1.25-openssl Important Threats CVE-2025-68121 20623-1

suse
Calendar Grey March 6, 2026
Dist Suse Esm H88
Critical update for go1.25-openssl on SUSE fixes 18 issues with important security adjustments, enhancing overall security.
An update that solves 18 vulnerabilities, contains one feature and has five fixes can now be installed.

Summary

## This update for go1.25-openssl fixes the following issues: * Update to version 1.25.7 (jsc#SLE-18320) * CVE-2025-61730: crypto/tls: handshake messages may be processed at the incorrect encryption level (bsc#1256821) * CVE-2025-68119: cmd/go: unexpected code execution when invoking toolchain (bsc#1256820) * CVE-2025-61731: cmd/go: bypass of flag sanitization can lead to arbitrary code execution (bsc#1256819) * CVE-2025-61726: net/http: memory exhaustion in Request.ParseForm (bsc#1256817) * CVE-2025-61728: archive/zip: denial of service when parsing arbitrary ZIP archives (bsc#1256816) * CVE-2025-68121: crypto/tls: Config.Clone copies automatically generated session ticket keys, session resumption does not account for the expiration of full certificate chain (bsc#1256818)

References

* bsc#1244485

* bsc#1245878

* bsc#1249985

* bsc#1251253

* bsc#1251254

* bsc#1251255

* bsc#1251256

* bsc#1251257

* bsc#1251258

* bsc#1251259

* bsc#1251260

* bsc#1251261

* bsc#1251262

* bsc#1254227

* bsc#1254430

* bsc#1254431

* bsc#1256816

* bsc#1256817

* bsc#1256818

* bsc#1256819

* bsc#1256820

* bsc#1256821

* bsc#1257486

* jsc#SLE-18320

Cross-

* CVE-2025-47912

* CVE-2025-58183

* CVE-2025-58185

* CVE-2025-58186

* CVE-2025-58187

* CVE-2025-58188

* CVE-2025-58189

* CVE-2025-61723

* CVE-2025-61724

* CVE-2025-61725

* CVE-2025-61726

* CVE-2025-61727

* CVE-2025-61728

* CVE-2025-61729

* CVE-2025-61730

* CVE-2025-61731

* CVE-2025-68119

* CVE-2025-68121

CVSS scores:

* CVE-2025-47912 ( SUSE ): 8.8

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:20623-1
Release Date: 2026-03-03T09:04:46Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here