--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-6d4139dafe
2026-01-01 01:07:37.402497+00:00
--------------------------------------------------------------------------------

Name        : delve
Product     : Fedora 42
Version     : 1.26.0
Release     : 1.fc42
URL         : https://github.com/go-delve/delve
Summary     : A debugger for the Go programming language
Description :

Delve is a debugger for the Go programming language. The goal of the project
is to provide a simple, full featured debugging tool for Go. Delve should be
easy to invoke and easy to use. Chances are if you're using a debugger, things
aren't going your way. With that in mind, Delve should stay out of your way as
much as possible.

--------------------------------------------------------------------------------
Update Information:

Support for Go 1.26 and security fixes. Upstream release notes.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Dec 19 2025 Packit <[email protected]> - 1.26.0-1
- Update to 1.26.0 upstream release
* Fri Oct 10 2025 Alejandro Sáez <[email protected]> - 1.25.2-2
- rebuild
* Wed Aug 27 2025 Packit <[email protected]> - 1.25.2-1
- Update to 1.25.2 upstream release
- Resolves: rhbz#2391351
* Fri Aug 15 2025 Maxwell G <[email protected]> - 1.25.1-5
- Rebuild for golang-1.25.0
* Fri Aug 15 2025 Maxwell G <[email protected]> - 1.25.1-4
- Revert "Rebuild for golang-1.25.0"
* Fri Aug 15 2025 Maxwell G <[email protected]> - 1.25.1-3
- Rebuild for golang-1.25.0
* Wed Jul 23 2025 Fedora Release Engineering <[email protected]> - 
1.25.1-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2399350 - CVE-2025-47906 delve: Unexpected paths returned from 
LookPath in os/exec [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2399350
  [ 2 ] Bug #2407876 - CVE-2025-58189 delve: go crypto/tls ALPN negotiation 
error contains attacker controlled information [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2407876
  [ 3 ] Bug #2408153 - CVE-2025-58189 delve: go crypto/tls ALPN negotiation 
error contains attacker controlled information [fedora-43]
        https://bugzilla.redhat.com/show_bug.cgi?id=2408153
  [ 4 ] Bug #2409344 - CVE-2025-61723 delve: Quadratic complexity when parsing 
some invalid inputs in encoding/pem [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2409344
  [ 5 ] Bug #2409623 - CVE-2025-61723 delve: Quadratic complexity when parsing 
some invalid inputs in encoding/pem [fedora-43]
        https://bugzilla.redhat.com/show_bug.cgi?id=2409623
  [ 6 ] Bug #2410295 - CVE-2025-58185 delve: Parsing DER payload can cause 
memory exhaustion in encoding/asn1 [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2410295
  [ 7 ] Bug #2410574 - CVE-2025-58185 delve: Parsing DER payload can cause 
memory exhaustion in encoding/asn1 [fedora-43]
        https://bugzilla.redhat.com/show_bug.cgi?id=2410574
  [ 8 ] Bug #2411208 - CVE-2025-58188 delve: Panic when validating certificates 
with DSA public keys in crypto/x509 [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2411208
  [ 9 ] Bug #2411472 - CVE-2025-58188 delve: Panic when validating certificates 
with DSA public keys in crypto/x509 [fedora-43]
        https://bugzilla.redhat.com/show_bug.cgi?id=2411472
  [ 10 ] Bug #2423981 - delve-1.26.0 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2423981
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-6d4139dafe' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to