{"schema_version":"1.7.3","id":"openSUSE-SU-2018:0629-1","published":"2018-03-07T07:34:01Z","modified":"2026-02-04T04:35:37.976118Z","related":["CVE-2018-6574"],"upstream":["CVE-2018-6574"],"summary":"Security update for go1.8","details":"This update for go1.8 fixes the following issues:\n\nSecurity issues fixed:\n\n- CVE-2018-6574: 'go get' allows for remote command execution during source code build (bsc#1080006).\n\nBug fixes:\n\n- bsc#1082409: Review dependencies (requires, recommends and supports)\n\nThis update was imported from the SUSE:SLE-12:Update update project.","affected":[{"package":{"name":"go1.8","ecosystem":"SUSE:Package Hub 12","purl":"pkg:rpm/suse/go1.8&distro=SUSE%20Package%20Hub%2012"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.8.7-5.1"}]}],"ecosystem_specific":{"binaries":[{"go1.8":"1.8.7-5.1","go1.8-doc":"1.8.7-5.1","go1.8-race":"1.8.7-5.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2018:0629-1.json"}}],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1080006"},{"type":"REPORT","url":"https://bugzilla.suse.com/1082409"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-6574"}]}