Known vulnerabilities in golang (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:golang_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 65
Public exploits: 2
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting golang (Red Hat package) golang (Red Hat package) is affected by 65 known vulnerabilities: 7 high, 49 medium, 9 low Critical High Medium Low

Vulnerabilities (65)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140618 - Improper Output Neutralization for Logs
CVE-2026-42507
CWE-117 Medium
No
No
1.26.4-1.el10_2 31.07.2026 SB2026073127
SB20260731115
SB20260731143
and 6 more
#VU140607 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-32282
CWE-367 Low
No
No
1.25.9-1.el9_2, 1.25.9-1.el9_6, 1.25.9-1.el10_0, 1.25.9-3.el10_1 31.07.2026 SB2026073125
SB2026073160
SB2026073161
and 50 more
#VU140604 - Memory corruption
CVE-2026-27144
CWE-119 Low
No
No
1.25.9-1.el9_2, 1.25.9-1.el9_6, 1.25.9-1.el10_0, 1.25.9-3.el10_1 31.07.2026 SB2026073125
SB2026073157
SB2026073158
and 11 more
#VU140603 - Integer overflow
CVE-2026-27143
CWE-190 Low
No
No
1.25.9-1.el9_2, 1.25.9-1.el9_6, 1.25.9-1.el10_0, 1.25.9-3.el10_1 31.07.2026 SB2026073125
SB2026073157
SB2026073158
and 11 more
#VU140601 - Protection Mechanism Failure
CVE-2026-27140
CWE-693 High
No
No
1.17.13-12.el9_0, 1.19.13-25.el9_2, 1.21.13-16.el9_4, 1.25.9-1.el9_6, 1.25.9-1.el10_0, 1.25.9-3.el10_1 31.07.2026 SB2026073125
SB2026073155
SB2026073156
and 15 more
#VU140600 - Improper input validation
CVE-2026-32281
CWE-20 Medium
No
No
1.25.9-1.el9_2 31.07.2026 SB2026073125
SB2026073183
SB2026073184
and 35 more
#VU140599 - Resource exhaustion
CVE-2026-32280
CWE-400 Medium
No
No
1.25.9-1.el9_2, 1.25.9-1.el9_6, 1.25.9-1.el10_0, 1.25.9-3.el10_1 31.07.2026 SB2026073125
SB2026073160
SB2026073161
and 70 more
#VU136680 - Dependency on Vulnerable Third-Party Component
CVE-2026-32283
CWE-1395 Medium
No
No
1.25.9-1.el9_2, 1.25.9-1.el9_6, 1.25.9-1.el10_0, 1.25.9-3.el10_1 02.07.2026 SB2026070218
SB2026070239
SB2026070240
and 61 more
#VU124118 - Improper input validation
CVE-2026-25679
CWE-20 Medium
No
No
1.17.13-11.el9_0, 1.19.13-24.el9_2, 1.25.8-1.el9_6, 1.25.8-1.el9_7, 1.25.8-1.el10_1 19.03.2026 SB2026031903
SB2026031904
SB2026031905
and 134 more
#VU124035 - Protection Mechanism Failure
CVE-2025-61731
CWE-693 High
No
No
1.17.13-11.el9_0, 1.19.13-24.el9_2, 1.25.8-1.el9_6, 1.25.8-1.el9_7, 1.25.8-1.el10_0, 1.25.8-1.el10_1 16.03.2026 SB2026031680
SB20260316116
SB2026032049
and 18 more
#VU124034 - Resource exhaustion
CVE-2025-61726
CWE-400 Medium
No
No
1.17.13-10.el9_0, 1.19.13-23.el9_2, 1.21.13-14.el9_4, 1.25.7-1.el9_6, 1.25.7-1.el9_7, 1.25.7-1.el10_0, 1.25.7-1.el10_1 16.03.2026 SB2026031636
SB2026031637
SB2026031638
and 143 more
#VU124033 - Improper input validation
CVE-2025-61728
CWE-20 Medium
No
No
1.17.13-10.el9_0, 1.19.13-23.el9_2, 1.21.13-14.el9_4, 1.25.7-1.el9_6, 1.25.7-1.el9_7, 1.25.7-1.el10_0, 1.25.7-1.el10_1 16.03.2026 SB2026031636
SB2026031637
SB2026031638
and 46 more
#VU123445 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-61732
CWE-94 Medium
No
No
1.17.13-10.el9_0, 1.19.13-23.el9_2, 1.21.13-14.el9_4, 1.25.7-1.el9_6, 1.25.7-1.el9_7, 1.25.7-1.el10_0, 1.25.7-1.el10_1 03.03.2026 SB2026030334
SB2026030343
SB2026030375
and 25 more
#VU123129 - Improper Certificate Validation
CVE-2025-68121
CWE-295 High
No
No
1.25.7-1.el9_6, 1.25.7-1.el9_7, 1.25.7-1.el10_0, 1.25.7-1.el10_1, 1.25.9-1.el9_2 23.02.2026 SB2026022333
SB2026030334
SB2026030343
and 116 more
#VU119235 - Resource exhaustion
CVE-2025-61729
CWE-400 Medium
No
No
1.17.13-9.el9_0, 1.19.13-21.el9_2, 1.21.13-13.el9_4, 1.25.5-1.el10_0, 1.25.5-1.el10_1, 1.25.5-2.el9_7 06.12.2025 SB2025120604
SB20251210172
SB20251210173
and 146 more
#VU118190 - Resource exhaustion
CVE-2025-58183
CWE-400 Medium
No
No
1.17.13-8.el9_0, 1.19.13-20.el9_2, 1.21.13-12.el9_4, 1.25.3-1.el9_6, 1.25.3-1.el9_7, 1.25.3-1.el10_0, 1.25.3-1.el10_1 07.11.2025 SB2025110705
SB2025110725
SB2025110726
and 177 more
#VU114341 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-4674
CWE-78 High
No
No
1.19.13-18.el9_2, 1.21.13-10.el9_4, 1.24.6-1.el9_6 21.08.2025 SB2025082138
SB2025082164
SB2025082165
and 19 more
#VU114080 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-47907
CWE-362 Low
No
No
1.17.13-7.el9_0, 1.19.13-19.el9_2, 1.21.13-11.el9_4 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 50 more
#VU114079 - Improper input validation
CVE-2025-47906
CWE-20 Low
No
No
1.17.13-8.el9_0, 1.19.13-20.el9_2, 1.21.13-12.el9_4 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 130 more
#VU110251 - Exposure of sensitive information to an unauthorized actor
CVE-2025-4673
CWE-200 Low
No
No
1.24.4-1.el9_6, 1.24.4-1.el10_0 07.06.2025 SB2025060701
SB2025060702
SB2025061002
and 35 more


Showing elements 1 - 20 out of 65