Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE 15-SP2: 2020:2761-1 Moderate: go1.14 XSS Security Update

suse
Calendar Grey September 28, 2020
Dist Suse Esm H88
SUSE Security Patch addresses a go1.14 vulnerability related to XSS, categorized as moderate. Update accessible for Development Packages.
An update that solves one vulnerability and has one errata is now available

Summary

This update for go1.14 fixes the following issues: - go1.14.9 (released 2020-09-09) includes fixes to the compiler, linker, runtime, documentation, and the net/http and testing packages. Refs bsc#1164903 go1.14 release tracking * go#41192 net/http/fcgi: race detected during execution of TestResponseWriterSniffsContentType test * go#41016 net/http: Transport.CancelRequest no longer cancels in-flight request * go#40973 net/http: RoundTrip unexpectedly changes Request * go#40968 runtime: checkptr incorrectly -race flagging when using &^ arithmetic * go#40938 cmd/compile: R12 can be clobbered for write barrier call on PPC64 * go#40848 testing: "=== PAUSE" lines do not change the test name for the next log line * go#40797 cmd/compile: inline marker targets not reachable after assembly on arm

References

#1164903 #1176031

Cross- CVE-2020-24553

Affected Products:

SUSE Linux Enterprise Module for Development Tools 15-SP2

SUSE Linux Enterprise Module for Development Tools 15-SP1

https://www.suse.com/security/cve/CVE-2020-24553.html

https://bugzilla.suse.com/1164903

https://bugzilla.suse.com/1176031

Announcement ID: SUSE-SU-2020:2761-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here