openSUSE Security Update: Security update for go ______________________________________________________________________________ Announcement ID: openSUSE-SU-2017:1649-1 Rating: moderate References: #1040618 Cross-References: CVE-2017-8932 Affected Products: SUSE Package Hub for SUSE Linux Enterprise 12 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for go fixes the following issues: - CVE-2017-8932: Add patch to fix carry bug in x86-64 P-256 implementation (boo#1040618) Please note that go applications will need to be rebuilt to get this fix, as all go applications are statically linked. As we are regulary releasing updates to our distribution go applications they are not specifically included here. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Package Hub for SUSE Linux Enterprise 12: zypper in -t patch openSUSE-2017-719=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Package Hub for SUSE Linux Enterprise 12 (x86_64): go-1.7.0-12.1 go-1.7.0-5.2 go-doc-1.7.0-12.1 go-doc-1.7.0-5.2 References: https://www.suse.com/security/cve/CVE-2017-8932.html https://bugzilla.suse.com/1040618