Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2020:2776-1 Moderate: Go1.15 Cross-Site Scripting Threat

suse
Calendar Grey September 29, 2020
Dist Suse Esm H88
SUSE Security Alert: go1.15 mitigates a risk identified as moderate and comes with essential patches.
An update that solves one vulnerability, contains one feature and has two fixes is now available

Summary

go1.15 (released 2020-08-11) Go 1.15 is a major release of Go. go1.15.x minor releases will be provided through August 2021. https://github.com/golang/go/wiki/Go-Release-Cycle Most changes are in the implementation of the toolchain, runtime, and libraries. As always, the release maintains the Go 1 promise of compatibility. We expect almost all Go programs to continue to compile and run as before. * See release notes https://go.dev/doc/go1.15. Excerpts relevant to OBS environment and for SUSE/openSUSE follow: * Module support in the go command is ready for production use, and we encourage all users to migrate to Go modules for dependency management. * Module cache: The location of the module cache may now be set with the GOMODCACHE environment variable. The default value of GOMODCACHE is

References

#1170826 #1175132 #1176031 ECO-1484

Cross- CVE-2020-24553

Affected Products:

SUSE Linux Enterprise Module for Development Tools 15-SP2

SUSE Linux Enterprise Module for Development Tools 15-SP1

https://www.suse.com/security/cve/CVE-2020-24553.html

https://bugzilla.suse.com/1170826

https://bugzilla.suse.com/1175132

https://bugzilla.suse.com/1176031

Announcement ID: SUSE-SU-2020:2776-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here