[ALSA-2026:19013] Moderate: delve security update
Type:
security
Severity:
moderate
Release date:
2026-05-26
Description:
Delve is a debugger for the Go programming language. The goal of the project is to provide a simple, full featured debugging tool for Go. Delve should be easy to invoke and easy to use. Chances are if you're using a debugger, things aren't going your way. With that in mind, Delve should stay out of your way as much as possible. Security Fix(es): * crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729) * golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726) * crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 delve-1.26.1-1.el10_2.aarch64.rpm 44b03d793bd9018c3834389dbcb5bf667707d1cb211d18a58a1027cbddb4e475
ppc64le delve-1.26.1-1.el10_2.ppc64le.rpm fb62ab19c31d8c49237921e757afbc85e2da25ced1538c2846875d12769b2f3e
x86_64 delve-1.26.1-1.el10_2.x86_64.rpm fdd1f76cfb1db500a9b0a858bde68244fab9f21a06fee432c5cd59073928d1d3
x86_64_v2 delve-1.26.1-1.el10_2.x86_64_v2.rpm 1afa7a083901e5d5a1f9c70c5b199ed9c0febdeaa528aa652ca84f55be940c0d
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.