You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa golang

Sigurnosni nedostaci programskog paketa golang

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2015-12957
2015-08-07 10:03:44
——————————————————————————–

Name : golang
Product : Fedora 21
Version : 1.4.2
Release : 3.fc21
URL : http://golang.org/
Summary : The Go Programming Language
Description :
The Go Programming Language.

——————————————————————————–
Update Information:

security fixes for net/http smuggling
——————————————————————————–
ChangeLog:

* Wed Aug 5 2015 Vincent Batts <vbatts@fedoraproject.org> – 1.4.2-3
– bz1250352
* Wed Mar 18 2015 Vincent Batts <vbatts@fedoraproject.org> – 1.4.2-2
– obsoleting deprecated packages
* Wed Feb 18 2015 Vincent Batts <vbatts@fedoraproject.org> – 1.4.2-1
– updating to go1.4.2
* Fri Jan 16 2015 Vincent Batts <vbatts@fedoraproject.org> – 1.4.1-1
– updating to go1.4.1
* Fri Jan 2 2015 Vincent Batts <vbatts@fedoraproject.org> – 1.4-2
– doc organizing
* Thu Dec 11 2014 Vincent Batts <vbatts@fedoraproject.org> – 1.4-1
– update to go1.4 release
* Wed Dec 3 2014 Vincent Batts <vbatts@fedoraproject.org> – 1.3.99-3.1.4rc2
– update to go1.4rc2
* Mon Nov 17 2014 Vincent Batts <vbatts@fedoraproject.org> – 1.3.99-2.1.4rc1
– update to go1.4rc1
* Thu Oct 30 2014 Vincent Batts <vbatts@fedoraproject.org> – 1.3.99-1.1.4beta1
– update to go1.4beta1
* Thu Oct 30 2014 Vincent Batts <vbatts@fedoraproject.org> – 1.3.3-3
– macros will need to be in their own rpm
* Fri Oct 24 2014 Vincent Batts <vbatts@fedoraproject.org> – 1.3.3-2
– split out rpm macros (bz1156129)
– progress on gccgo accomodation
——————————————————————————–
References:

[ 1 ] Bug #1250352 – CVE-2015-5739 CVE-2015-5740 CVE-2015-5741 golang: HTTP request smuggling in net/http library
https://bugzilla.redhat.com/show_bug.cgi?id=1250352
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update golang’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-13002
2015-08-07 10:06:31
——————————————————————————–

Name : golang
Product : Fedora 22
Version : 1.4.2
Release : 3.fc22
URL : http://golang.org/
Summary : The Go Programming Language
Description :
The Go Programming Language.

——————————————————————————–
Update Information:

security fixes for net/http smuggling
——————————————————————————–
ChangeLog:

* Wed Aug 5 2015 Vincent Batts <vbatts@fedoraproject.org> – 1.4.2-3
– bz1250352
——————————————————————————–
References:

[ 1 ] Bug #1250352 – CVE-2015-5739 CVE-2015-5740 CVE-2015-5741 golang: HTTP request smuggling in net/http library
https://bugzilla.redhat.com/show_bug.cgi?id=1250352
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update golang’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorMarko Stanec
Cert idNCERT-REF-2015-08-0016-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa nagios-plugins

Otkriveni su sigurnosni nedostaci u programskom paketu nagios-plugins za operacijski sustav Fedora. Otkriveni nedostaci potencijalnim napadačima omogućuju čitanje dijelova konfiguracijske...

Close