VDB
WID-SEC-W-2025-0111
WID-SEC-W-2025-0111
PUBLISHED
CVSS 8.699999809265137 HIGH
Go ist eine quelloffene Programmiersprache.
Risk Scores
CVSS v4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Golang Go <1.24 | ||
| 24.0.1 | ||
| Golang Go 1.24rc2 | ||
| SUSE Linux | ||
| Ubuntu Linux | ||
| Golang Go 1.24 | ||
| Golang Go <1.23.5 | ||
| SUSE openSUSE | ||
| Golang Go 1.23.5 | ||
| Xerox FreeFlow Print Server 9 | ||
| Golang Go 1.22.11 | ||
| IBM Business Automation Workflow <24.0.0-IF005 | ||
| Red Hat Enterprise Linux | ||
| Oracle Linux | ||
| Golang Go <1.22.11 | ||
| Golang Go <1.24rc2 | ||
| IBM Business Automation Workflow <24.0.1-IF002 | ||
| 24.0.0 |
Timeline
- Jan 16, 2025 CVE Published
- Jun 19, 2025 CVE Updated
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
References
- https://go.dev/issue/71249 url
- https://go.dev/issue/71216 url
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-0111.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-0111 advisory
- https://groups.google.com/g/golang-announce/c/L8jWYHEfOlQ url
- https://groups.google.com/g/golang-announce/c/sSaUhLA-2SI url
- https://go.dev/issue/71156 url
- https://go.dev/issue/70530 url
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/Q3ZTZP3RXZGJRRPGSFEUWJMYPA5WPOPW/ url
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/YRIXY47SJKPKQTDVCPRO6E2DUY5GPEEU/ url
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ZW52JECN55QJ6BSQ4PZXG4RAAPBRCVGB/ url
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/RQNJ3CKJG63VZGTT4HRQJYBPGOWBUF5C/ url
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/TEFUHGEYXH2V4IV65LVVWOSXPYD2UOCT/ url
- https://access.redhat.com/errata/RHSA-2025:3131 url
- https://access.redhat.com/errata/RHSA-2025:3335 url
- https://access.redhat.com/errata/RHSA-2025:3593 url
- https://access.redhat.com/errata/RHSA-2025:3772 url
- https://linux.oracle.com/errata/ELSA-2025-3772.html url
- https://access.redhat.com/errata/RHSA-2025:3922 url
- https://www.ibm.com/support/pages/node/7232437 url
…and 9 more