# Critical Photon OS Security Update ## Summary Advisory Id : PHSA-2026-5.0-0869 Type : Security Severity : ['Critical', 'Important', 'Moderate', 'Low'] Issue date : 2026-06-08 Affected Release: 5.0 ## Details Updates of ['go'] packages of Photon OS have been released. ## Affected Packages ### Critical go - ['[CVE-2023-24540](https://nvd.nist.gov/vuln/detail/CVE-2023-24540)', '[CVE-2023-24538](https://nvd.nist.gov/vuln/detail/CVE-2023-24538)', '[CVE-2025-22871](https://nvd.nist.gov/vuln/detail/CVE-2025-22871)', '[CVE-2023-24531](https://nvd.nist.gov/vuln/detail/CVE-2023-24531)'] ### Important go - ['[CVE-2026-39820](https://nvd.nist.gov/vuln/detail/CVE-2026-39820)', '[CVE-2022-41722](https://nvd.nist.gov/vuln/detail/CVE-2022-41722)', '[CVE-2025-4674](https://nvd.nist.gov/vuln/detail/CVE-2025-4674)', '[CVE-2026-33814](https://nvd.nist.gov/vuln/detail/CVE-2026-33814)', '[CVE-2022-41723](https://nvd.nist.gov/vuln/detail/CVE-2022-41723)', '[CVE-2023-24534](https://nvd.nist.gov/vuln/detail/CVE-2023-24534)', '[CVE-2022-41716](https://nvd.nist.gov/vuln/detail/CVE-2022-41716)', '[CVE-2026-32281](https://nvd.nist.gov/vuln/detail/CVE-2026-32281)', '[CVE-2026-39836](https://nvd.nist.gov/vuln/detail/CVE-2026-39836)', '[CVE-2026-32283](https://nvd.nist.gov/vuln/detail/CVE-2026-32283)', '[CVE-2025-22874](https://nvd.nist.gov/vuln/detail/CVE-2025-22874)', '[CVE-2026-42499](https://nvd.nist.gov/vuln/detail/CVE-2026-42499)', '[CVE-2023-24536](https://nvd.nist.gov/vuln/detail/CVE-2023-24536)', '[CVE-2026-25679](https://nvd.nist.gov/vuln/detail/CVE-2026-25679)', '[CVE-2022-27664](https://nvd.nist.gov/vuln/detail/CVE-2022-27664)', '[CVE-2026-27140](https://nvd.nist.gov/vuln/detail/CVE-2026-27140)', '[CVE-2022-41720](https://nvd.nist.gov/vuln/detail/CVE-2022-41720)', '[CVE-2026-42501](https://nvd.nist.gov/vuln/detail/CVE-2026-42501)', '[CVE-2026-32280](https://nvd.nist.gov/vuln/detail/CVE-2026-32280)', '[CVE-2023-45287](https://nvd.nist.gov/vuln/detail/CVE-2023-45287)', '[BDSA-2026-5569](https://nvd.nist.gov/vuln/detail/BDSA-2026-5569)', '[CVE-2023-44487](https://nvd.nist.gov/vuln/detail/CVE-2023-44487)', '[CVE-2026-33810](https://nvd.nist.gov/vuln/detail/CVE-2026-33810)', '[CVE-2022-41725](https://nvd.nist.gov/vuln/detail/CVE-2022-41725)', '[CVE-2023-29400](https://nvd.nist.gov/vuln/detail/CVE-2023-29400)', '[CVE-2026-33811](https://nvd.nist.gov/vuln/detail/CVE-2026-33811)', '[BDSA-2026-5566](https://nvd.nist.gov/vuln/detail/BDSA-2026-5566)', '[CVE-2026-27137](https://nvd.nist.gov/vuln/detail/CVE-2026-27137)', '[CVE-2022-2879](https://nvd.nist.gov/vuln/detail/CVE-2022-2879)', '[CVE-2022-41724](https://nvd.nist.gov/vuln/detail/CVE-2022-41724)', '[CVE-2022-32190](https://nvd.nist.gov/vuln/detail/CVE-2022-32190)', '[CVE-2023-39325](https://nvd.nist.gov/vuln/detail/CVE-2023-39325)', '[BDSA-2026-6099](https://nvd.nist.gov/vuln/detail/BDSA-2026-6099)', '[CVE-2023-24537](https://nvd.nist.gov/vuln/detail/CVE-2023-24537)', '[CVE-2022-2880](https://nvd.nist.gov/vuln/detail/CVE-2022-2880)', '[CVE-2022-41715](https://nvd.nist.gov/vuln/detail/CVE-2022-41715)', '[CVE-2023-24539](https://nvd.nist.gov/vuln/detail/CVE-2023-24539)'] ### Moderate go - ['[CVE-2026-27138](https://nvd.nist.gov/vuln/detail/CVE-2026-27138)', '[CVE-2022-41717](https://nvd.nist.gov/vuln/detail/CVE-2022-41717)', '[CVE-2025-4673](https://nvd.nist.gov/vuln/detail/CVE-2025-4673)', '[BDSA-2026-8551](https://nvd.nist.gov/vuln/detail/BDSA-2026-8551)', '[CVE-2025-0913](https://nvd.nist.gov/vuln/detail/CVE-2025-0913)', '[CVE-2024-45341](https://nvd.nist.gov/vuln/detail/CVE-2024-45341)', '[CVE-2026-39819](https://nvd.nist.gov/vuln/detail/CVE-2026-39819)', '[CVE-2026-39825](https://nvd.nist.gov/vuln/detail/CVE-2026-39825)', '[CVE-2026-39826](https://nvd.nist.gov/vuln/detail/CVE-2026-39826)', '[CVE-2024-24785](https://nvd.nist.gov/vuln/detail/CVE-2024-24785)', '[CVE-2026-32282](https://nvd.nist.gov/vuln/detail/CVE-2026-32282)', '[BDSA-2026-8692](https://nvd.nist.gov/vuln/detail/BDSA-2026-8692)', '[CVE-2025-22866](https://nvd.nist.gov/vuln/detail/CVE-2025-22866)', '[CVE-2024-45336](https://nvd.nist.gov/vuln/detail/CVE-2024-45336)', '[CVE-2023-45290](https://nvd.nist.gov/vuln/detail/CVE-2023-45290)', '[CVE-2026-39817](https://nvd.nist.gov/vuln/detail/CVE-2026-39817)', '[CVE-2026-39823](https://nvd.nist.gov/vuln/detail/CVE-2026-39823)', '[CVE-2023-45289](https://nvd.nist.gov/vuln/detail/CVE-2023-45289)', '[CVE-2024-24783](https://nvd.nist.gov/vuln/detail/CVE-2024-24783)', '[CVE-2024-34155](https://nvd.nist.gov/vuln/detail/CVE-2024-34155)', '[CVE-2023-24532](https://nvd.nist.gov/vuln/detail/CVE-2023-24532)', '[CVE-2026-27142](https://nvd.nist.gov/vuln/detail/CVE-2026-27142)'] ### Low go - ['[CVE-2026-27139](https://nvd.nist.gov/vuln/detail/CVE-2026-27139)', '[CVE-2025-22873](https://nvd.nist.gov/vuln/detail/CVE-2025-22873)'] ## Solution Update the affected packages (tdnf update package) ## Updated Packages Information go-1.26.3-1.ph5.x86_64.rpm | size : 40M , sha256 : 6e9f6d5af78c27a8c2b95623752c55b7dcfa380bc058d8d23b47e9b60838ccb8 , build time : Sun, 07 Jun 2026 23:12:13 UTC go-md2man-2.0.7-1.ph5.x86_64.rpm | size : 908K , sha256 : 70048c512b5073b70d2c4f5c3070f86c081f9de59341cbbd3973f20a31843798 , build time : Sun, 07 Jun 2026 23:17:29 UTC