logo

Go 1.25.6 and 1.24.12 Patch Critical Vulnerabilities Lead to DoS and Memory Exhaustion Risks

ID: 1a17ce70-7d4d-503a-86f4-d9d451fecee2

STIX ID: report--1a17ce70-7d4d-503a-86f4-d9d451fecee2

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-01-16

Date Updated: 2026-04-21

Author: Guru Baran

...
...

Emergency Go 1.25.6 and 1.24.12 releases address six high-impact vulnerabilities — including DoS via archive/zip and net/http, arbitrary code execution through cmd/go/toolchain handling and CgoPkgConfig, and TLS session/key handling flaws — and urge developers to upgrade and rebuild immediately to mitigate supply-chain and remote execution risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.