Go 1.25.6 and 1.24.12 Patch Critical Vulnerabilities Lead to DoS and Memory Exhaustion Risks
ID: 1a17ce70-7d4d-503a-86f4-d9d451fecee2
STIX ID: report--1a17ce70-7d4d-503a-86f4-d9d451fecee2
Feed Name: cybersecurityNews.com
Threat Score
Emergency Go 1.25.6 and 1.24.12 releases address six high-impact vulnerabilities — including DoS via archive/zip and net/http, arbitrary code execution through cmd/go/toolchain handling and CgoPkgConfig, and TLS session/key handling flaws — and urge developers to upgrade and rebuild immediately to mitigate supply-chain and remote execution risks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
