Oval Definition:oval:org.opensuse.security:def:97144
Revision Date:2021-06-28Version:1
Title:Security update for go1.16 (Important)
Description:

This update for go1.16 fixes the following issues:

Update to 1.16.5.

Includes these security fixes

- CVE-2021-33195: net: Lookup functions may return invalid host names (bsc#1187443). - CVE-2021-33196: archive/zip: malformed archive may cause panic or memory exhaustion (bsc#1186622). - CVE-2021-33197: net/http/httputil: ReverseProxy forwards Connection headers if first one is empty (bsc#1187444) - CVE-2021-33198: math/big: (*Rat).SetString with '1.770p02041010010011001001' crashes with 'makeslice: len out of range' (bsc#1187445).
Family:unixClass:patch
Status:Reference(s):1182345
1186622
1187443
1187444
1187445
CVE-2021-33195
CVE-2021-33196
CVE-2021-33197
CVE-2021-33198
SUSE-SU-2021:2186-1
Platform(s):openSUSE Leap 15.3 SLE Imports
Product(s):
Definition Synopsis
  • openSUSE Leap 15.3 SLE Imports is installed
  • AND Package Information
  • go1.16-1.16.5-1.17.1 is installed
  • OR go1.16-doc-1.16.5-1.17.1 is installed
  • OR go1.16-race-1.16.5-1.17.1 is installed
  • BACK