openSUSE Security Update: Security update for go ______________________________________________________________________________ Announcement ID: openSUSE-SU-2017:1650-1 Rating: moderate References: #1040618 Cross-References: CVE-2017-8932 Affected Products: openSUSE Leap 42.2 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for go fixes the following issues: - CVE-2017-8932: Add patch to fix carry bug in x86-64 P-256 implementation (boo#1040618) Please note that go applications will need to be rebuilt to get this fix, as all go applications are statically linked. As we are regulary releasing updates to our distribution go applications they are not specifically included here. Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE Leap 42.2: zypper in -t patch openSUSE-2017-719=1 To bring your system up-to-date, use "zypper patch". Package List: - openSUSE Leap 42.2 (i586 x86_64): go-1.6.2-23.3.3 go-debuginfo-1.6.2-23.3.3 go-debugsource-1.6.2-23.3.3 go-doc-1.6.2-23.3.3 References: https://www.suse.com/security/cve/CVE-2017-8932.html https://bugzilla.suse.com/1040618