ELSA-2023-13028

ELSA-2023-13028 - olcne security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-12-07

Description


conmon
[2.1.3-7]
- Resolve CVE-2023-39325

[2.1.3-6]
- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile

[2.1.3-5]
- Add systemd-devel as build requirement

[2.1.3-4]
- Add support ARM build

[2.1.3.3]
- Add OL9 support

[2.1.3.2]
- Update inline with Linux team building conmon for all but OL7.

cri-o
[1.25.2-3]
- Resolve CVE-2023-39325

cri-tools
[1.25.0-2]
- Resolve CVE-2023-39325

etcd
[3.5.9-2]
- Bump up version

[3.5.9-1]
- Added Oracle specific build files

flannel-cni-plugin
[1.0.1-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

helm
[3.11.1-2]
- address CVE-2023-44487 and CVE-2023-39325

istio
kata
[1.12.1-14]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-13]
- Rebuild kata to fix timestamp issue

[1.12.1-12]
- Add support for ARM build

[1.12.1-11]
- Add OL9 support

[1.12.1-10]
- Updated kata-runtime version to work with more versions of kvm_utils

kata-agent
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in kata-image specfile

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Add OL9 support

kata-image
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in specfile

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Restore OL7 and bump release

[1.12.1-5]
- Add support for Oracle Linux 9

[1.12.1-4]
- build for kata-agent-1.12.1-4

kata-ksm-throttler
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Bump releaase inline with others for reversion of removal of OL7.

[1.12.1-5]
- Add support for Oracle Linux 9

kata-proxy
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Revert OL7 removal

[1.12.1-5]
- Add support for Oracle Linux 9

kata-runtime
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Add OL9 support

[1.12.1-5]
- Updated qemu-kvm machine options to work with more versions of kvm_utils

kata-shim
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Bump releaase inline with others for reversion of removal of OL7.

[1.12.1-5]
- Add support for Oracle Linux 9

kubernetes
kubernetes-cni
[1.0.1-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

kubernetes-cni-plugins
[1.0.1-4]
- Resolve CVE-2023-44487 and CVE-2023-39325

olcne
[1.6.5-9]
- Mark container-registry as updatable

[1.6.5-9]
- update metallb 0.12.1 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-8]
- Update externalip-webhook 1.0.0-3 to address CVE-2023-44487, CVE-2023-39325

[1.6.5-7]
- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-6]
- Update rook-1.10.9 to address CVE-2023-44487, CVE-2023-39325

[1.6.5-5]
- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's
- CVE-2023-44487
- CVE-2023-39325

[1.6.5-4]
- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325

[1.6.5-3]
- update configmap-registry to 1.28.0 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-2]
- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-1]
- Update calico image versions to address golang CVE-2023-44487, CVE-2023-39325

yq
[4.34.1-3]
- address CVE-2023-44487 and CVE-2023-3932A

[4.34.1-2]
- Add support for ARM build


Related CVEs


CVE-2023-39325
CVE-2023-44487

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) conmon-2.1.3-7.el8.src.rpm418d75e2368469c29697972adbd8549e-ol8_x86_64_olcne16
cri-o-1.25.2-3.el8.src.rpmde3a7043197f7a4b32f753b286e80d7b-ol8_x86_64_olcne16
cri-tools-1.25.0-2.el8.src.rpmacfa667c699d54b17d555bfff61f16d8-ol8_x86_64_olcne16
etcd-3.5.9-2.el8.src.rpm2e9da822b17f74c5cbb21f249ce24f5d-ol8_x86_64_olcne16
flannel-cni-plugin-1.0.1-3.el8.src.rpmd413bd1b790ab34cb58ac05340ec021a-ol8_x86_64_olcne16
helm-3.11.1-2.el8.src.rpm1e0d499898e1190b310340c9791f4dcf-ol8_x86_64_olcne16
istio-1.16.7-2.el8.src.rpm8a61b2e730df372f0d75db3bf9f25de3-ol8_x86_64_olcne16
kata-1.12.1-14.el8.src.rpm81aca6a1135fed5a9a3c4e0137c37cf8-ol8_x86_64_olcne16
kata-agent-1.12.1-9.el8.src.rpmf3a53cd564ea7bbb919a9c72be2c5cf8-ol8_x86_64_olcne16
kata-image-1.12.1-9.9.ol8_202311161805.src.rpme1bd9b77a2f7a07e0c347f41493c0f00-ol8_x86_64_olcne16
kata-ksm-throttler-1.12.1-9.el8.src.rpm587f2994ca670ca41e41c2dee28d2a9b-ol8_x86_64_olcne16
kata-proxy-1.12.1-9.el8.src.rpm35ef91c6137da4526b3e6abd53b6589e-ol8_x86_64_olcne16
kata-runtime-1.12.1-9.el8.src.rpm272efc6d172ea7ed6e666d63cd6c77a9-ol8_x86_64_olcne16
kata-shim-1.12.1-9.el8.src.rpm8d2de4eb6b80e475e0d0d860473d3a53-ol8_x86_64_olcne16
kubernetes-1.25.15-1.el8.src.rpmd3a00694406298495eaf3f5030932539-ol8_x86_64_olcne16
kubernetes-cni-1.0.1-3.el8.src.rpm20fb70568deb20edfea10ec69e54287f-ol8_x86_64_olcne16
kubernetes-cni-plugins-1.0.1-4.el8.src.rpm9fa7c51a4a6348c63cadbf9a609c1e65-ol8_x86_64_olcne16
olcne-1.6.5-10.el8.src.rpm8418eb312307b57912e942775f96e756-ol8_x86_64_olcne16
yq-4.34.1-3.el8.src.rpm03ad8136596b21c988c69a554aa67b0c-ol8_x86_64_olcne16
conmon-2.1.3-7.el8.x86_64.rpmcbfd9f9e5d5018ab338adc7caf28ef83-ol8_x86_64_olcne16
cri-o-1.25.2-3.el8.x86_64.rpmcb6f6aecd29077c8499f094acf26b917-ol8_x86_64_olcne16
cri-tools-1.25.0-2.el8.x86_64.rpmc373ab572cfd713d699f9c0be3f32bb9-ol8_x86_64_olcne16
etcd-3.5.9-2.el8.x86_64.rpm6af1430451ca943aaa06acd809c9ba10-ol8_x86_64_olcne16
flannel-cni-plugin-1.0.1-3.el8.x86_64.rpm0c770d959693c74b14d74bdbaa3492a0-ol8_x86_64_olcne16
helm-3.11.1-2.el8.x86_64.rpm761739f3aa452ff94b9a76dd69e04991-ol8_x86_64_olcne16
istio-1.16.7-2.el8.x86_64.rpm7c003bc291b5dad277b400446769a82c-ol8_x86_64_olcne16
istio-istioctl-1.16.7-2.el8.x86_64.rpm522308e8827fd192b333bf8500b8ffd1-ol8_x86_64_olcne16
kata-1.12.1-14.el8.x86_64.rpm38ad1edb1dc771ce8330197b8166f4e9-ol8_x86_64_olcne16
kata-agent-1.12.1-9.el8.x86_64.rpm551083f6560ba18a9562e702b149dab8-ol8_x86_64_olcne16
kata-image-1.12.1-9.9.ol8_202311161805.x86_64.rpm0458a6b55c96181b808fba5662de5378-ol8_x86_64_olcne16
kata-ksm-throttler-1.12.1-9.el8.x86_64.rpm75c64cbb5ee7ae0ebcad3a72326f88b7-ol8_x86_64_olcne16
kata-proxy-1.12.1-9.el8.x86_64.rpmdce2b6eea8465c1317c187d85ca47eaf-ol8_x86_64_olcne16
kata-runtime-1.12.1-9.el8.x86_64.rpm3cd92488d294395a16b2f7fafe0e7ccd-ol8_x86_64_olcne16
kata-shim-1.12.1-9.el8.x86_64.rpm28008352aa72715d74db29f1303b127e-ol8_x86_64_olcne16
kubeadm-1.25.15-1.el8.x86_64.rpm986e688e26fc1164a23a99a334cc5281-ol8_x86_64_olcne16
kubectl-1.25.15-1.el8.x86_64.rpm1c7857d847b0be3e752ad8a35af31222-ol8_x86_64_olcne16
kubelet-1.25.15-1.el8.x86_64.rpm9761caef2ebd17da6b1a6c53bc0f9345-ol8_x86_64_olcne16
kubernetes-cni-1.0.1-3.el8.x86_64.rpm73261f534fadf637e6b8d388a89c06b9-ol8_x86_64_olcne16
kubernetes-cni-plugins-1.0.1-4.el8.x86_64.rpm98abe1ad3fab79e970fa221be61a7117-ol8_x86_64_olcne16
olcne-agent-1.6.5-10.el8.x86_64.rpm4847c39aede56ca309ec1a349960f87c-ol8_x86_64_olcne16
olcne-api-server-1.6.5-10.el8.x86_64.rpm208ec52caef1e782bba9d4e689ec65f4-ol8_x86_64_olcne16
olcne-calico-chart-1.6.5-10.el8.x86_64.rpm3b82d8a71647c346888e1e39e25eaf09-ol8_x86_64_olcne16
olcne-gluster-chart-1.6.5-10.el8.x86_64.rpm3085a796e06e5f31410d94af66a5c4d8-ol8_x86_64_olcne16
olcne-grafana-chart-1.6.5-10.el8.x86_64.rpmee7ec429c2a21e88a7bff70632e2f9c4-ol8_x86_64_olcne16
olcne-istio-chart-1.6.5-10.el8.x86_64.rpm224d1826b1630fcc6ad04a545cb60667-ol8_x86_64_olcne16
olcne-metallb-chart-1.6.5-10.el8.x86_64.rpm85b5d27edc8ae149a72302010c882a08-ol8_x86_64_olcne16
olcne-multus-chart-1.6.5-10.el8.x86_64.rpm76fd0d4d63a8b6e4f0b9c33f2804e479-ol8_x86_64_olcne16
olcne-nginx-1.6.5-10.el8.x86_64.rpmd1b75cc9f24955dc9d966cff2744a0e0-ol8_x86_64_olcne16
olcne-oci-ccm-chart-1.6.5-10.el8.x86_64.rpmf59a6b82ab54ba8c2a559a90235aefca-ol8_x86_64_olcne16
olcne-olm-chart-1.6.5-10.el8.x86_64.rpm51bdead80705a8d0705659729e3a5889-ol8_x86_64_olcne16
olcne-prometheus-chart-1.6.5-10.el8.x86_64.rpmf0cabbbd0e91469b6f6f6e32193c7a1d-ol8_x86_64_olcne16
olcne-utils-1.6.5-10.el8.x86_64.rpm2a94759067c6e57cae17b17baa3965e5-ol8_x86_64_olcne16
olcnectl-1.6.5-10.el8.x86_64.rpm7ce922c39afe96fca5a04aa6a0862006-ol8_x86_64_olcne16
yq-4.34.1-3.el8.x86_64.rpm59750c71513933ca259235efd61b5117-ol8_x86_64_olcne16



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete