ELSA-2021-9267

ELSA-2021-9267 - olcne security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2021-05-29

Description


helm
[3.3.4-2]
- Address CVE-2021-27918

coredns
[1.7.0-1]
- Added Oracle specific build files

cri-o
[1.18.4-2]
- Fix for CVE-2021-27918

[1.18.4-1]
- Added Oracle Specifile Files for cri-o

cri-tools
[1.18.0-2]
- Address CVE-2021-27918

etcd
[3.4.3-1.0.5]
- Address CVE-2021-27918

flannel
[0.12.0-2]
- Address CVE-2021-27918

[0.12.0-1]
- Release of flannel-0.12.0-1

yq
[3.4.0-2]
- Address CVE-2021-27918

conmon
[2.0.20-4]
- Address CVE-2021-27918

conmon
[3:2.0.21-4]
- Address CVE-2021-27918

kata-proxy
[1.11.5-2]
- Address CVE-2021-27918

kata-shim
[1.11.5-2]
- Address CVE-2021-27918

kata-runtime
[1.11.5-2]
- Address CVE-2021-27918

kata-ksm-throttler
[1.11.5-2]
- Address CVE-2021-27918

kata-image
[1.11.5-2]
- Address CVE-2021-27918

kata-agent
[1.11.5-2]
- Fix for CVE-2021-27918

kata
[1.11.5-4]
- Address CVE-2021-27918

[1.11.5-3]
- Support 1.19, 1.20 k8s

kubernetes-cni-plugins
[0.8.7-2]
- Removed BuildArch to support ARM builds

kubernetes-cni
[0.8.0-3]
- Address CVE-2021-27918

kubernetes-dashboard
[2.0.3-2]
- Address CVE-2021-27918

kubernetes
[1.18.18-1]
- Address CVE-2021-27918

istio
[1.7.3-1.0.2]
- Address CVE-2021-27918

[1.7.3-1.0.1]
- Run gateway pods as root user to workaround ports lessthan 1024 binding failures

[1.7.3-1.0.0]
- Added Oracle Specific Build Files for istio/istio

olcne
[1.2.3-9]
- Updated version for istio-module grafana: v6.7.4-3 and prometheus: v2.20.0-1

[1.2.3-8]
- Revert istio version to 1.7.3-1 which has just golang CVE fixes

[1.2.3-7]
- Fix k8s update path
- Update el8 conmon pre-install

[1.2.3-6]
- Updated updatepath in kubernetes.yaml and image version in templates

[1.2.3-5]
- Added missing info for 1.18.18 in kubernetes.yaml and helm.yaml
- Updated image repository in templates

[1.2.3-4]
- Fix for the failure of kubernetes restore [Orabug: 32310718]

[1.2.3-3]
- Address Istio CVE-2021-28683, CVE-2021-28682 & CVE-2021-29258

[1.2.3-2]
- fix bug where externalip cidr's can't fully be disabled

[1.2.3-1]
- Bug Fix: Update istio module definition to pass instance name for release resource


Related CVEs


CVE-2021-27918

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (x86_64) conmon-2.0.20-4.el8.src.rpmafde89e47cf7d20e834943d3cc86c6d5-
conmon-2.0.21-4.el8.src.rpm8b9013da38316f07dd4b79a34bc6f7c4-
coredns-1.7.0-1.el8.src.rpmc051711cffe26289922436f94438aa04-
cri-o-1.18.4-2.el8.src.rpm1f6c8c6861533f0d6c116911d2110192-
cri-tools-1.18.0-2.el8.src.rpm0e460540dfb252ecfbed9314e3e1fb90-
etcd-3.4.3-1.0.5.el8.src.rpm73eb95cdafa2463cab9141f7c7c8beac-
flannel-0.12.0-2.el8.src.rpm7b286380cb851d401d759bed2272f79e-
helm-3.3.4-2.el8.src.rpm6b1779dc1091023ea8188d40e61ececa-
istio-1.7.3-1.0.2.el8.src.rpm9fc3e59d8371978a1b3b8297cce6adce-
kata-1.11.5-4.el8.src.rpm2d4e1f1e47815fcfa1695ee8567bca70-
kata-agent-1.11.5-2.el8.src.rpmc08eff6c008a19f3935dc23438a9114c-
kata-image-1.11.5-2.2.ol8_202104281558.src.rpm62e23a0e838807b43b386ed55bbbacba-
kata-ksm-throttler-1.11.5-2.el8.src.rpm48ae2b07ca8094049dcea96cc8611499-
kata-proxy-1.11.5-2.el8.src.rpmdfa0ee5a42af9db0f511c885a4922d16-
kata-runtime-1.11.5-2.el8.src.rpm32233b4ff5763b4c4fc7e28ddadcc98e-
kata-shim-1.11.5-2.el8.src.rpm75c492a696e78cfddbb5db2a34c81709-
kubernetes-1.18.18-2.el8.src.rpme7127f403055a958122808ea710d7ed7-
kubernetes-cni-0.8.0-3.el8.src.rpm081153a1a8fdae6783c6e2f68d137682-
kubernetes-cni-plugins-0.8.7-2.el8.src.rpmd5ebfbe9aefa6f2f59fccfa625f382d6-
kubernetes-dashboard-2.0.3-2.el8.src.rpme36ce0c7e1a3c29b2dba9517d57dfec7-
olcne-1.2.3-9.el8.src.rpmec8977fcaf30da4b4ba81630f5252975-
yq-3.4.0-2.el8.src.rpmf2d21c1e8598969a791531031faf316c-
conmon-2.0.20-4.el8.x86_64.rpmd0d88e8e4c917acb1a293f8f3abd4913-
conmon-2.0.21-4.el8.x86_64.rpm983c4df7f11c6b99593025f2eb576b7f-
coredns-1.7.0-1.el8.x86_64.rpm1fa7bd09f5319a4621c85f1b3602ac10-
cri-o-1.18.4-2.el8.x86_64.rpm635ce2c79f41cb7c8685281d78269832-
cri-tools-1.18.0-2.el8.x86_64.rpmed6c244b5e4c0f35f18f6c5adb29a0c5-
etcd-3.4.3-1.0.5.el8.x86_64.rpm2a79b6b328b26b95470563fa43939a22-
flannel-0.12.0-2.el8.x86_64.rpm38a97d55f9346fdfd91d300714145279-
helm-3.3.4-2.el8.x86_64.rpme3030b494ae814077a7c93d20ec7d587-
istio-1.7.3-1.0.2.el8.x86_64.rpmba35a9453f701884d1adb07835ebe1d2-
istio-istioctl-1.7.3-1.0.2.el8.x86_64.rpme417e93b41f3cce3b7d6514a80e9e5e7-
istio-mixc-1.7.3-1.0.2.el8.x86_64.rpm3d2501e3371d91f73f6c57e8b006b08f-
istio-mixs-1.7.3-1.0.2.el8.x86_64.rpm4cf4d4559445e15e55a96e239c52f1a5-
istio-pilot-agent-1.7.3-1.0.2.el8.x86_64.rpmfd7d04148cffa18ee400c7d5012e0fd6-
istio-pilot-discovery-1.7.3-1.0.2.el8.x86_64.rpmedb17d9c7083d1d231db5f889f385c2b-
kata-1.11.5-4.el8.x86_64.rpm243ed286481fac53a7e7354d19bc81f8-
kata-agent-1.11.5-2.el8.x86_64.rpm122616ed3186d16c4943e389137764c7-
kata-image-1.11.5-2.2.ol8_202104281558.x86_64.rpm1ef94e26c7e49766e67378a2abf98803-
kata-ksm-throttler-1.11.5-2.el8.x86_64.rpm6d88e4cb2f16f2f5308f3c104f564128-
kata-proxy-1.11.5-2.el8.x86_64.rpm9b5170cec1e1e2c7bb2c055b84294614-
kata-runtime-1.11.5-2.el8.x86_64.rpmf812852548a872df166979a0e7c058a7-
kata-shim-1.11.5-2.el8.x86_64.rpm27f4fcf51a4f558abed274b0db7223de-
kubeadm-1.18.18-2.el8.x86_64.rpm58351c505150ae07db67668c72811fe7-
kubectl-1.18.18-2.el8.x86_64.rpma2cdabb85fd91ebe0220660e857258ad-
kubelet-1.18.18-2.el8.x86_64.rpm6adaacd43dc3ee6bee3d67c523001f26-
kubernetes-cni-0.8.0-3.el8.x86_64.rpma8c20631cfe5cdc69a4d87eaaa5f0d0f-
kubernetes-cni-plugins-0.8.7-2.el8.x86_64.rpm8ea30630bc99fa9e1c9f994a366dbd73-
kubernetes-dashboard-2.0.3-2.el8.x86_64.rpmabb5f9311c38707f74da5e61fed8dfa5-
olcne-agent-1.2.3-9.el8.x86_64.rpm6568b287bb12d9a2acb2471054cb3e33-
olcne-api-server-1.2.3-9.el8.x86_64.rpm83a5ea408b5a8169c7c14069bcbfcbc7-
olcne-istio-chart-1.2.3-9.el8.x86_64.rpmf24d7cecac627c30cb672c6123e625fc-
olcne-nginx-1.2.3-9.el8.x86_64.rpm6b43f7d7252cb24eaee3fcbd07727faf-
olcne-prometheus-chart-1.2.3-9.el8.x86_64.rpmbc05d1c920442bd0489beae8ada21236-
olcne-utils-1.2.3-9.el8.x86_64.rpm6d729e6ccdad5c6b7f9dddd2e5191634-
olcnectl-1.2.3-9.el8.x86_64.rpmf4d98d948777c33532725076dec6d3ba-
yq-3.4.0-2.el8.x86_64.rpm69280ec5f4bdaf8164ca0a895e5dafc2-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete