RHSA-2021:3585: Moderate: go-toolset:rhel8 security update
Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang. Security Fix(es): golang: net: incorrect parsing of extraneous zero characters at the beginning of an IP address octet (CVE-2021-29923) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2021:3585?
The vulnerability is classified as moderate severity.
How do I fix RHSA-2021:3585?
You can fix RHSA-2021:3585 by updating to the recommended package versions, such as golang 1.15.14-2.module+el8.4.0+12542+e3fec473.
What does the vulnerability in RHSA-2021:3585 affect?
RHSA-2021:3585 affects the Go Toolset and associated packages due to incorrect parsing of IP address octets.
What specific CVE is associated with RHSA-2021:3585?
RHSA-2021:3585 is associated with CVE-2021-29923.
Which packages need to be updated for RHSA-2021:3585?
Packages that need updates include golang, go-toolset, and delve, among others.