ELSA-2019-4718

ELSA-2019-4718 - kubernetes security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2019-07-29

Description


[1.11.3-2.7.2]
- [OLCNE-494] [CVE-2019-11244] fix CVE-2019-11244: 'kubectl --http-cache='
- creates world-writeable cached schema files

[1.11.3.2.6.2]
- [OLCNE-384] [CVE-2019-11243] rest.AnonymousClientConfig() does not remove the serviceaccount credentials from config created by rest.InClusterConfig()


Related CVEs



Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) kubernetes-1.11.3-2.7.2.el7.src.rpm174e8f1accc794dc7b7796de11213cdaELBA-2021-9240
kubeadm-1.11.3-2.7.2.el7.x86_64.rpme32f6ca821053a5386466bc1f86f1ab0ELBA-2021-9240
kubectl-1.11.3-2.7.2.el7.x86_64.rpm2a56aeb64180015ff69274471871e234ELBA-2021-9240
kubelet-1.11.3-2.7.2.el7.x86_64.rpma8cc66e599ffa025d3b7b51368be3797ELBA-2021-9240



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete