ELSA-2021-4226

ELSA-2021-4226 - grafana security, bug fix, and enhancement update

Type:SECURITY
Impact:MODERATE
Release Date:2021-11-16

Description


[7.5.9-4]
- resolve CVE-2021-39226

[7.5.9-3]
- rebuild to resolve CVE-2021-34558

[7.5.9-2]
- remove unused dependency property-information
- always include FIPS patch in SRPM

[7.5.9-1]
- update to 7.5.9 tagged upstream community sources, see CHANGELOG

[7.5.8-1]
- update to 7.5.8 tagged upstream community sources, see CHANGELOG
- remove unused dependencies selfsigned, http-signature and gofpdf

[7.5.7-2]
- remove unused cryptographic implementations
- use cryptographic functions from OpenSSL if FIPS mode is enabled

[7.5.7-1]
- update to 7.5.7 tagged upstream community sources, see CHANGELOG


Related CVEs


CVE-2021-33195
CVE-2021-34558
CVE-2021-27358
CVE-2021-3114
CVE-2021-33197

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) grafana-7.5.9-4.el8.src.rpm59d23a3ce7aee415006ca772a6c80a5e396c456b5469d26d8fc487df187ecb70-ol8_aarch64_appstream
grafana-7.5.9-4.el8.aarch64.rpm1bbec12c9f319e6ef958afdb82ae7a5c7849e68fc54ae1f70c2375da122b7719-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) grafana-7.5.9-4.el8.src.rpm59d23a3ce7aee415006ca772a6c80a5e396c456b5469d26d8fc487df187ecb70-ol8_x86_64_appstream
grafana-7.5.9-4.el8.x86_64.rpm611d323a0e94c9a95df10aead209c1a44a3a80e25bf71e7fb9355d21a3ff8c50-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete