CLSA-2026-1778838399

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2026-1778838399
Upstream
  • CVE-2026-32282
Published
2026-05-15T11:02:05Z
Modified
2026-06-01T00:32:52.428669141Z
Summary
golang: Fix of CVE-2026-32282
Details
  • CVE-2026-32282: fix TOCTOU race in os.Root.Chmod on Linux that allowed symlink-based escapes from the restricted root by switching to fchmodat2 with /proc/self/fd fallback
References

Affected packages

TuxCare:AlmaLinux:9.6
go-toolset

Package

Name
go-toolset
Purl
pkg:rpm/tuxcare/go-toolset?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang

Package

Name
golang
Purl
pkg:rpm/tuxcare/golang?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang-bin

Package

Name
golang-bin
Purl
pkg:rpm/tuxcare/golang-bin?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang-docs

Package

Name
golang-docs
Purl
pkg:rpm/tuxcare/golang-docs?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang-misc

Package

Name
golang-misc
Purl
pkg:rpm/tuxcare/golang-misc?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang-race

Package

Name
golang-race
Purl
pkg:rpm/tuxcare/golang-race?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang-src

Package

Name
golang-src
Purl
pkg:rpm/tuxcare/golang-src?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"
golang-tests

Package

Name
golang-tests
Purl
pkg:rpm/tuxcare/golang-tests?distro=almalinux-9.6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.25.7-1.el9_6.tuxcare.els3

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/almalinux9.6esu/CLSA-2026-1778838399.json"