[SUSE-SU-2023:3181-1] Security update for go1.20
Severity
Important
Affected Packages
24
CVEs
1
Security update for go1.20
This update for go1.20 fixes the following issues:
- Update to go v1.20.7 (released 2023-08-01) (bsc#1206346)
- CVE-2023-29409: Restrict RSA keys in certificates to less than or equal to 8192 bits to avoid DoSing client/server while validating signatures for extremely large RSA keys. (bsc#1213880)
- ID
- SUSE-SU-2023:3181-1
- Severity
- important
- URL
- https://www.suse.com/support/update/announcement/2023/suse-su-20233181-1/
- Published
-
2023-08-03T19:34:23
(13 months ago) - Modified
-
2023-08-03T19:34:23
(13 months ago) - Rights
- Copyright 2024 SUSE LLC. All rights reserved.
- Other Advisories
-
- ALAS-2023-1848
- ALAS-2023-1849
- ALAS2-2023-2208
- ALAS2-2023-2209
- ALAS2-2023-2210
- ALAS2-2023-2211
- ALAS2-2023-2229
- ALAS2-2023-2303
- ALPINE:CVE-2023-29409
- ALSA-2023:5738
- ALSA-2023:7762
- ALSA-2023:7763
- ALSA-2023:7764
- ALSA-2023:7765
- ALSA-2023:7766
- ALSA-2024:0121
- ELSA-2023-5738
- ELSA-2023-7762
- ELSA-2023-7763
- ELSA-2023-7764
- ELSA-2023-7765
- ELSA-2023-7766
- ELSA-2024-0121
- ELSA-2024-2988
- GLSA-202311-09
- GO-2023-1987
- RHSA-2023:5721
- RHSA-2023:5738
- RHSA-2023:7762
- RHSA-2023:7763
- RHSA-2023:7764
- RHSA-2023:7765
- RHSA-2023:7766
- RHSA-2024:0121
- RHSA-2024:2988
- SUSE-SU-2023:3263-1
- SUSE-SU-2023:3474-1
- SUSE-SU-2023:3840-1
- SUSE-SU-2023:3841-1
- SUSE-SU-2023:3861-1
- SUSE-SU-2023:3867-1
- SUSE-SU-2023:3868-1
- SUSE-SU-2023:3875-1
- SUSE-SU-2023:3885-1
- SUSE-SU-2023:3886-1
- SUSE-SU-2023:3888-1
Source | # ID | Name | URL |
---|---|---|---|
Suse | SUSE ratings | https://www.suse.com/support/security/rating/ | |
Suse | URL of this CSAF notice | https://ftp.suse.com/pub/projects/security/csaf/suse-su-2023_3181-1.json | |
Suse | URL for SUSE-SU-2023:3181-1 | https://www.suse.com/support/update/announcement/2023/suse-su-20233181-1/ | |
Suse | E-Mail link for SUSE-SU-2023:3181-1 | https://lists.suse.com/pipermail/sle-updates/2023-August/030785.html | |
Bugzilla | SUSE Bug 1206346 | https://bugzilla.suse.com/1206346 | |
Bugzilla | SUSE Bug 1213880 | https://bugzilla.suse.com/1213880 | |
CVE | SUSE CVE CVE-2023-29409 page | https://www.suse.com/security/cve/CVE-2023-29409/ |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/suse/go1.20?arch=x86_64&distro=opensuse-leap-15.5 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | x86_64 | |
Affected | pkg:rpm/suse/go1.20?arch=x86_64&distro=opensuse-leap-15.4 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/go1.20?arch=s390x&distro=opensuse-leap-15.5 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | s390x | |
Affected | pkg:rpm/suse/go1.20?arch=s390x&distro=opensuse-leap-15.4 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/go1.20?arch=ppc64le&distro=opensuse-leap-15.5 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | ppc64le | |
Affected | pkg:rpm/suse/go1.20?arch=ppc64le&distro=opensuse-leap-15.4 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/go1.20?arch=aarch64&distro=opensuse-leap-15.5 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | aarch64 | |
Affected | pkg:rpm/suse/go1.20?arch=aarch64&distro=opensuse-leap-15.4 | suse | go1.20 | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | aarch64 | |
Affected | pkg:rpm/suse/go1.20-race?arch=x86_64&distro=opensuse-leap-15.5 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | x86_64 | |
Affected | pkg:rpm/suse/go1.20-race?arch=x86_64&distro=opensuse-leap-15.4 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/go1.20-race?arch=s390x&distro=opensuse-leap-15.5 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | s390x | |
Affected | pkg:rpm/suse/go1.20-race?arch=s390x&distro=opensuse-leap-15.4 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/go1.20-race?arch=ppc64le&distro=opensuse-leap-15.5 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | ppc64le | |
Affected | pkg:rpm/suse/go1.20-race?arch=ppc64le&distro=opensuse-leap-15.4 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/go1.20-race?arch=aarch64&distro=opensuse-leap-15.5 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | aarch64 | |
Affected | pkg:rpm/suse/go1.20-race?arch=aarch64&distro=opensuse-leap-15.4 | suse | go1.20-race | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | aarch64 | |
Affected | pkg:rpm/suse/go1.20-doc?arch=x86_64&distro=opensuse-leap-15.5 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | x86_64 | |
Affected | pkg:rpm/suse/go1.20-doc?arch=x86_64&distro=opensuse-leap-15.4 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | x86_64 | |
Affected | pkg:rpm/suse/go1.20-doc?arch=s390x&distro=opensuse-leap-15.5 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | s390x | |
Affected | pkg:rpm/suse/go1.20-doc?arch=s390x&distro=opensuse-leap-15.4 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | s390x | |
Affected | pkg:rpm/suse/go1.20-doc?arch=ppc64le&distro=opensuse-leap-15.5 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | ppc64le | |
Affected | pkg:rpm/suse/go1.20-doc?arch=ppc64le&distro=opensuse-leap-15.4 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | ppc64le | |
Affected | pkg:rpm/suse/go1.20-doc?arch=aarch64&distro=opensuse-leap-15.5 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.5 | aarch64 | |
Affected | pkg:rpm/suse/go1.20-doc?arch=aarch64&distro=opensuse-leap-15.4 | suse | go1.20-doc | < 1.20.7-150000.1.20.1 | opensuse-leap-15.4 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |