[El-errata] ELSA-2026-37436 Important: Oracle Linux 10 golang security, bug fix, and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed Jul 22 11:26:37 UTC 2026


Oracle Linux Security Advisory ELSA-2026-37436

http://linux.oracle.com/errata/ELSA-2026-37436.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
go-toolset-1.26.5-1.0.1.el10_2.x86_64.rpm
golang-1.26.5-1.0.1.el10_2.x86_64.rpm
golang-bin-1.26.5-1.0.1.el10_2.x86_64.rpm
golang-docs-1.26.5-1.0.1.el10_2.noarch.rpm
golang-misc-1.26.5-1.0.1.el10_2.noarch.rpm
golang-race-1.26.5-1.0.1.el10_2.x86_64.rpm
golang-src-1.26.5-1.0.1.el10_2.noarch.rpm
golang-tests-1.26.5-1.0.1.el10_2.noarch.rpm

aarch64:
go-toolset-1.26.5-1.0.1.el10_2.aarch64.rpm
golang-1.26.5-1.0.1.el10_2.aarch64.rpm
golang-bin-1.26.5-1.0.1.el10_2.aarch64.rpm
golang-docs-1.26.5-1.0.1.el10_2.noarch.rpm
golang-misc-1.26.5-1.0.1.el10_2.noarch.rpm
golang-race-1.26.5-1.0.1.el10_2.aarch64.rpm
golang-src-1.26.5-1.0.1.el10_2.noarch.rpm
golang-tests-1.26.5-1.0.1.el10_2.noarch.rpm


SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/golang-1.26.5-1.0.1.el10_2.src.rpm

Related CVEs:

CVE-2026-39821
CVE-2026-39822




Description of changes:

[1.26.5-1.0.1]
- EXPERIMENTAL: Introduce fipsnoenforceems GODEBUG var

[1.26.5-1]
- Update to Go 1.26.5 (fips-1)

[1.25.7-1]
- Update to Go 1.25.7 (fips-1)

[1.25.5-1]
- Update to Go 1.25.5 (fips-1)

[1.25.3-5]
- gating.yaml: Add tier1 s390x tests

[1.25.3-4]
- Cleanup lib/ ownership
- Remove legacy logic forcing lib/ into golang-tests
- Move lib/wasm, lib/fips140, and lib/time to main golang package
- Fixes go_js_wasm_exec availability

[1.25.3-3]
- plans/tier0.fmf: Import plan

[1.25.3-2]
- rpminspect.yaml: Add testdata to annocheck ignore

[1.25.3-1]
- Update to Go 1.25.3

[1.25.1-1]
- Update to Go1.25.1 -Resolves: RHEL-116849




More information about the El-errata mailing list