FEDORA-EPEL-2021-99c2d09762 created by jcajka 2 months ago for Fedora EPEL 7
stable
  • Update to go1.15.14
  • Fix crash in VDSO calls on ppc64le
  • Security fix for CVE-2020-28851, CVE-2020-28852, CVE-2021-3114, CVE-2021-3115, CVE-2021-27918, CVE-2021-31525, CVE-2021-33198, CVE-2021-33197, CVE-2021-33195 and CVE-2021-34558

This update has been submitted for testing by jcajka.

2 months ago

This update's test gating status has been changed to 'ignored'.

2 months ago

This update's test gating status has been changed to 'waiting'.

2 months ago

This update's test gating status has been changed to 'ignored'.

2 months ago

This update has been pushed to testing.

2 months ago

This update has been submitted for stable by bodhi.

2 months ago

This update has been pushed to stable.

2 months ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
2 months ago
in testing
2 months ago
in stable
2 months ago
BZ#1913333 CVE-2020-28851 golang.org/x/text: Panic in language.ParseAcceptLanguage while parsing -u- extension
0
0
BZ#1913336 CVE-2020-28851 golang: golang.org/x/text: Panic in language.ParseAcceptLanguage while parsing -u- extension [epel-7]
0
0
BZ#1913338 CVE-2020-28852 golang.org/x/text: Panic in language.ParseAcceptLanguage while processing bcp47 tag
0
0
BZ#1913365 CVE-2020-28852 golang: golang.org/x/text: Panic in language.ParseAcceptLanguage while processing bcp47 tag [epel-7]
0
0
BZ#1918750 CVE-2021-3114 golang: crypto/elliptic: incorrect operations on the P-224 curve
0
0
BZ#1918752 CVE-2021-3114 golang: crypto/elliptic: incorrect operations on the P-224 curve [epel-all]
0
0
BZ#1918761 CVE-2021-3115 golang: cmd/go: packages using cgo can cause arbitrary code execution at build time
0
0
BZ#1918762 CVE-2021-3115 golang: cmd/go: packages using cgo can cause arbitrary code execution at build time [epel-all]
0
0
BZ#1937901 CVE-2021-27918 golang: encoding/xml: infinite loop when using xml.NewTokenDecoder with a custom TokenReader
0
0
BZ#1937902 CVE-2021-27918 golang: encoding/xml: infinite loop when using xml.NewTokenDecoder with a custom TokenReader [epel-all]
0
0
BZ#1958341 CVE-2021-31525 golang: net/http: panic in ReadRequest and ReadResponse when reading a very large header
0
0
BZ#1958342 CVE-2021-31525 golang: net/http: panic in ReadRequest and ReadResponse when reading a very large header [epel-all]
0
0
BZ#1983596 CVE-2021-34558 golang: crypto/tls: certificate of wrong type is causing TLS client to panic
0
0
BZ#1986200 CVE-2021-34558 golang: crypto/tls: certificate of wrong type is causing TLS client to panic [epel-7]
0
0
BZ#1989564 CVE-2021-33195 golang: net: lookup functions may return invalid host names
0
0
BZ#1989565 CVE-2021-33195 golang: net: lookup functions may return invalid host names [epel-all]
0
0
BZ#1989570 CVE-2021-33197 golang: net/http/httputil: ReverseProxy forwards connection headers if first one is empty
0
0
BZ#1989571 CVE-2021-33197 golang: net/http/httputil: ReverseProxy forwards connection headers if first one is empty [epel-all]
0
0
BZ#1989575 CVE-2021-33198 golang: math/big.Rat: may cause a panic or an unrecoverable fatal error if passed inputs with very large exponents
0
0
BZ#1989576 CVE-2021-33198 golang: math/big.Rat: may cause a panic or an unrecoverable fatal error if passed inputs with very large exponents [epel-all]
0
0

Automated Test Results