RHSA-2021:5176HighCVSS 7.5
Red Hat Security Advisory: go-toolset-1.16 and go-toolset-1.16-golang security and bug fix update
🔗 CVE IDs covered (3)
📋 Description
CVE-2021-41772 — golang: archive/zip: Reader.Open panics on empty string CVE-2021-44716 — golang: net/http: limit growth of header canonicalization cache CVE-2021-44717 — golang: syscall: don't close fd 0 on ForkExec error
🔗 References (6)
- selfhttps://access.redhat.com/errata/RHSA-2021:5176
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://access.redhat.com/documentation/en-us/red_hat_developer_tools/1/html/using_go_1.16.6_toolset
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2030801
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2030806
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_5176.json