VDB

ALSA-2025%3A3773

ALSA-2025%3A3773 PUBLISHED

The Go Programming Language. Security Fix(es): * encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion (CVE-2024-34156) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Affected Products

VendorProductVersions
AlmaLinux:9golang-docs0, 0
AlmaLinux:9golang-misc0, 0
AlmaLinux:9golang-race0, 0
AlmaLinux:9golang-src0, 0
AlmaLinux:9delve0, 0
AlmaLinux:9golang0, 0
AlmaLinux:9go-toolset0, 0
AlmaLinux:9golang-bin0, 0
AlmaLinux:9golang-tests0, 0

Timeline

  • Apr 10, 2025 CVE Published
  • Feb 4, 2026 CVE Updated
  • Mar 6, 2026 Distribution Patch
  • Mar 6, 2026 Distribution Patch
  • Mar 6, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›