* Update to go1.16.6 * Security fix for CVE-2021-34558. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-25c0011e78 2021-07-28 01:22:55.228777 --------------------------------------------------------------------------------Name : golang Product : Fedora 34 Version : 1.16.6 Release : 1.fc34 URL : https://go.dev/ Summary : The Go Programming Language Description : The Go Programming Language. --------------------------------------------------------------------------------Update Information: * Update to go1.16.6 * Security fix for CVE-2021-34558 --------------------------------------------------------------------------------ChangeLog: * Wed Jul 14 2021 Mike Rochefort - 1.16.6-1 - Update to go1.16.6 - Security fix for CVE-2021-34558 - Resolves: BZ#1983597 --------------------------------------------------------------------------------References: [ 1 ] Bug #1983596 - CVE-2021-34558 golang: crypto/tls: certificate of wrong type is causing TLS client to panic https://bugzilla.redhat.com/show_bug.cgi?id=1983596 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-25c0011e78' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Certain values transmitted in RX ACK packets were not sanity checked by OpenAFS receiving peers, which could lead to an assertion being triggered during construction of outgoing packets on the same connection, resulting in server process crashes or client kernel panics. . Synopsis: Important: Openafs Security Update Advisory ID: OPENAFS-SA-2017-001 Issue Date: 2017-12-06 --Security Fix(es): * Certain values transmitted in RX ACK packets were not sanity checked by OpenAFS receiving peers, which could lead to an assertion being triggered during construction of outgoing packets on the same connection, resulting in server process crashes or client kernel panics. --SL6 x86_64 openafs-kpasswd-1.6.20-257.sl6.x86_64.rpm openafs-client-1.6.20-257.sl6.x86_64.rpm openafs-1.6.20-257.sl6.x86_64.rpm openafs-krb5-1.6.20-257.sl6.x86_64.rpm openafs-authlibs-1.6.20-257.sl6.x86_64.rpm openafs-devel-1.6.20-257.sl6.x86_64.rpm openafs-plumbing-tools-1.6.20-257.sl6.x86_64.rpm openafs-server-1.6.20-257.sl6.x86_64.rpm openafs-module-tools-1.6.20-257.sl6.x86_64.rpm openafs-compat-1.6.20-257.sl6.x86_64.rpm kmod-openafs-696-1.6.20-257.sl6.696.x86_64.rpm openafs-authlibs-devel-1.6.20-257.sl6.x86_64.rpm openafs-kernel-source-1.6.20-257.sl6.x86_64.rpm i386 openafs-client-1.6.20-257.sl6.i686.rpm openafs-authlibs-1.6.20-257.sl6.i686.rpm kmod-openafs-696-1.6.20-257.sl6.696.i686.rpm openafs-module-tools-1.6.20-257.sl6.i686.rpm openafs-authlibs-devel-1.6.20-257.sl6.i686.rpm openafs-devel-1.6.20-257.sl6.i686.rpm openafs-1.6.20-257.sl6.i686.rpm openafs-compat-1.6.20-257.sl6.i686.rpm openafs-server-1.6.20-257.sl6.i686.rpm openafs-plumbing-tools-1.6.20-257.sl6.i686.rpm openafs-krb5-1.6.20-257.sl6.i686.rpm openafs-kpasswd-1.6.20-257.sl6.i686.rpm openafs-kernel-source-1.6.20-257.sl6.i686.rpm SL7 x86_64 openafs-1.6-sl-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-authlibs-devel-1.6.22-278.sl7.x86_64.rpm kmod-openafs-1.6-sl-693-1.6.22-278.sl7.693.11.1.x86_64.rpm openafs-1.6-sl-authlibs-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-krb5-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-client-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-plumbing-tools-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-kernel-source-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-kpasswd-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-compat-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-devel-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-module-tools-1.6.22-278.sl7.x86_64.rpm openafs-1.6-sl-server-1.6.22-278.sl7.x86_64.rpm - Scientific Linux Development Team . Important OpenAFS release for SL6.x and SL7.x to fix server failures and client kernel freezes. Essential information below.. OpenAFS Security, Scientific Linux Update, Server Process Crashes, Client Kernel Panic, RX ACK Packet Issues. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.