ELSA-2018-4061

ELSA-2018-4061 - kubernetes security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2018-04-05

Description


[1.9.1-2.1.5]
- Production built 1.9.1-2.1.5
- Fix the upgrade version check
- Remove w/a from [Orabug 27125915]

[1.9.1-2.1.4.dev]
- Make sure worker node upgrade properly
- [Orabug 27649898]

[1.9.1-2.1.3.dev]
- Ensure that the runtime mounts RO volumes read-only [CVE-2017-1002102]
- Update Dashboard version to v1.8.3 [CVE-2017-1002102]
- Fix nested volume mounts for read-only API data volumes [CVE-2017-1002102]
- Fixed kubeadm-setup.sh and kubeadm-registry.sh
- Add feature gate for subpath [CVE-2017-1002101]
- Add subpath e2e tests [CVE-2017-1002101]
- Lock subPath volumes [CVE-2017-1002101]


Related CVEs


CVE-2017-1002102
CVE-2017-1002101

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) kubernetes-1.9.1-2.1.5.el7.src.rpm6efc33624bac071d29ff8f38e7614439ELBA-2021-9240
kubeadm-1.9.1-2.1.5.el7.x86_64.rpm36ac06353ff562c98fcacb37ec9e2303ELBA-2021-9240
kubectl-1.9.1-2.1.5.el7.x86_64.rpm846e0b41d3b19649bcc976dd3f1329bcELBA-2021-9240
kubelet-1.9.1-2.1.5.el7.x86_64.rpme81157ac065e9e7ae267e6e9986edb6dELBA-2021-9240



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete