ELSA-2021-4226

ELSA-2021-4226 - grafana security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2021-11-16

Description


[7.5.9-4]
- resolve CVE-2021-39226

[7.5.9-3]
- rebuild to resolve CVE-2021-34558

[7.5.9-2]
- remove unused dependency property-information
- always include FIPS patch in SRPM

[7.5.9-1]
- update to 7.5.9 tagged upstream community sources, see CHANGELOG

[7.5.8-1]
- update to 7.5.8 tagged upstream community sources, see CHANGELOG
- remove unused dependencies selfsigned, http-signature and gofpdf

[7.5.7-2]
- remove unused cryptographic implementations
- use cryptographic functions from OpenSSL if FIPS mode is enabled

[7.5.7-1]
- update to 7.5.7 tagged upstream community sources, see CHANGELOG


Related CVEs


CVE-2021-3114
CVE-2021-33195
CVE-2021-33197
CVE-2021-27358
CVE-2021-34558

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) grafana-7.5.9-4.el8.src.rpm859534bbd64796dfd5b8ecd0a942249c-
grafana-7.5.9-4.el8.aarch64.rpmd9713fefe15b1223e69fe0533bfba8a7-
Oracle Linux 8 (x86_64) grafana-7.5.9-4.el8.src.rpm859534bbd64796dfd5b8ecd0a942249c-
grafana-7.5.9-4.el8.x86_64.rpmc58323a3dc0985a4aef2ecd7f349e00f-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete