Lucene search

K
redhatRedHatRHSA-2017:1859
HistoryAug 01, 2017 - 5:55 a.m.

(RHSA-2017:1859) Moderate: golang security, bug fix, and enhancement update

2017-08-0105:55:26
access.redhat.com
15

0.005 Low

EPSS

Percentile

75.3%

The golang packages provide the Go programming language compiler.

The following packages have been upgraded to a later upstream version: golang (1.8.3). (BZ#1414500)

Security Fix(es):

  • A carry propagation flaw was found in the implementation of the P-256 elliptic curve in golang. An attacker could possibly use this flaw to extract private keys when static ECDH was used. (CVE-2017-8932)

Additional Changes:

For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.4 Release Notes linked from the References section.