ELSA-2021-9267

ELSA-2021-9267 - olcne security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2021-05-29

Description


helm
[3.3.4-2]
- Address CVE-2021-27918

coredns
[1.7.0-1]
- Added Oracle specific build files

cri-o
[1.18.4-2]
- Fix for CVE-2021-27918

[1.18.4-1]
- Added Oracle Specifile Files for cri-o

cri-tools
[1.18.0-2]
- Address CVE-2021-27918

etcd
[3.4.3-1.0.5]
- Address CVE-2021-27918

flannel
[0.12.0-2]
- Address CVE-2021-27918

[0.12.0-1]
- Release of flannel-0.12.0-1

yq
[3.4.0-2]
- Address CVE-2021-27918

conmon
[2.0.20-4]
- Address CVE-2021-27918

conmon
[3:2.0.21-4]
- Address CVE-2021-27918

kata-proxy
[1.11.5-2]
- Address CVE-2021-27918

kata-shim
[1.11.5-2]
- Address CVE-2021-27918

kata-runtime
[1.11.5-2]
- Address CVE-2021-27918

kata-ksm-throttler
[1.11.5-2]
- Address CVE-2021-27918

kata-image
[1.11.5-2]
- Address CVE-2021-27918

kata-agent
[1.11.5-2]
- Fix for CVE-2021-27918

kata
[1.11.5-4]
- Address CVE-2021-27918

[1.11.5-3]
- Support 1.19, 1.20 k8s

kubernetes-cni-plugins
[0.8.7-2]
- Removed BuildArch to support ARM builds

kubernetes-cni
[0.8.0-3]
- Address CVE-2021-27918

kubernetes-dashboard
[2.0.3-2]
- Address CVE-2021-27918

kubernetes
[1.18.18-1]
- Address CVE-2021-27918

istio
[1.7.3-1.0.2]
- Address CVE-2021-27918

[1.7.3-1.0.1]
- Run gateway pods as root user to workaround ports lessthan 1024 binding failures

[1.7.3-1.0.0]
- Added Oracle Specific Build Files for istio/istio

olcne
[1.2.3-9]
- Updated version for istio-module grafana: v6.7.4-3 and prometheus: v2.20.0-1

[1.2.3-8]
- Revert istio version to 1.7.3-1 which has just golang CVE fixes

[1.2.3-7]
- Fix k8s update path
- Update el8 conmon pre-install

[1.2.3-6]
- Updated updatepath in kubernetes.yaml and image version in templates

[1.2.3-5]
- Added missing info for 1.18.18 in kubernetes.yaml and helm.yaml
- Updated image repository in templates

[1.2.3-4]
- Fix for the failure of kubernetes restore [Orabug: 32310718]

[1.2.3-3]
- Address Istio CVE-2021-28683, CVE-2021-28682 & CVE-2021-29258

[1.2.3-2]
- fix bug where externalip cidr's can't fully be disabled

[1.2.3-1]
- Bug Fix: Update istio module definition to pass instance name for release resource


Related CVEs


CVE-2021-27918

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) conmon-2.0.20-4.el8.src.rpmbd1f6e6041366cccb4efa91424d9b1964968e611e1265a793483f6f3eb786dc9-ol8_x86_64_olcne12
conmon-2.0.21-4.el8.src.rpm0c57c23c926839d15a2a69862df0f3aff3a9b0a386fb381fa158bbb5bff6b961-ol8_x86_64_olcne12
coredns-1.7.0-1.el8.src.rpmb5b0b0046b833f311687ba3e1a54038fa59e4c5356d47662c000493eaf276fef-ol8_x86_64_olcne12
coredns-1.7.0-1.el8.src.rpmb5b0b0046b833f311687ba3e1a54038fa59e4c5356d47662c000493eaf276fef-ol8_x86_64_olcne13
cri-o-1.18.4-2.el8.src.rpm184678ca8f31424df6a8201263ad7cf21afa48e87497f462fd7c3bc52e7bacb6-ol8_x86_64_olcne12
cri-tools-1.18.0-2.el8.src.rpm91075f45c887f5833022a246997d586e765763e44163013490d08ec35cd79856-ol8_x86_64_olcne12
etcd-3.4.3-1.0.5.el8.src.rpm308e797692d75030ca836627b7278d9aaee2464f494e1f1fc941f3f07eb2d6c6-ol8_x86_64_olcne12
flannel-0.12.0-2.el8.src.rpmf25575aac5b4cb475eb1e6a50f45add76f651724f2e15ae70e094c0540e08879-ol8_x86_64_olcne12
helm-3.3.4-2.el8.src.rpm15ae4a1fd21ba65641975af9674cfe2f4bb2295e18cb3e742b2d7eed9ce414b5-ol8_x86_64_olcne12
helm-3.3.4-2.el8.src.rpm15ae4a1fd21ba65641975af9674cfe2f4bb2295e18cb3e742b2d7eed9ce414b5-ol8_x86_64_olcne13
istio-1.7.3-1.0.2.el8.src.rpm19b82da811d7be929942e8d4119d35f18a01e258162f4fa11d267ce5f2d099e0-ol8_x86_64_olcne12
kata-1.11.5-4.el8.src.rpmdba2e3f4778bf8839b82365ca32fe48bca8e9182c7f5eef3e64bcaebe483f660-ol8_x86_64_olcne12
kata-agent-1.11.5-2.el8.src.rpm55d0d6c6ae2ab50b54929bda4e66c0e37d5e4adac12c726ee3986b59edc747b4-ol8_x86_64_olcne12
kata-image-1.11.5-2.2.ol8_202104281558.src.rpm6171d3b8b3b814f0ed393130a3a16339973a254678ecd68e86e6c7def0f1102b-ol8_x86_64_olcne12
kata-ksm-throttler-1.11.5-2.el8.src.rpm0345e979862b7fc7a10784629dfd7284004ed18d5fa1496a3cb1ae589dd57820-ol8_x86_64_olcne12
kata-proxy-1.11.5-2.el8.src.rpmbc2344eaa232e9b2be0d0a7fb256303524420a6791a490243d78ec8542864520-ol8_x86_64_olcne12
kata-runtime-1.11.5-2.el8.src.rpmca13ca86d6f8bc45863367a878a90d986e6544e005f09c3044063fe56f1ce7fc-ol8_x86_64_olcne12
kata-shim-1.11.5-2.el8.src.rpma86149610cd3ceab2fc892114fe66ae7fb12844aeea0f957494afe255fcc3f9e-ol8_x86_64_olcne12
kubernetes-1.18.18-2.el8.src.rpm5e7dfc305188108994f627c197fa2aac90789f6ae106a83b24a078cd8d1a4ca0-ol8_x86_64_olcne12
kubernetes-cni-0.8.0-3.el8.src.rpm5fdea38c63471f31701a2b1e8c7db3d5ac05ce73491d67cbb032db90f47bac2d-ol8_x86_64_olcne12
kubernetes-cni-plugins-0.8.7-2.el8.src.rpm116aaa8c5666a4200755c660bbcb70f5cb80875065e64d5b5036d223b59dbc63-ol8_x86_64_olcne12
kubernetes-dashboard-2.0.3-2.el8.src.rpm314a2ac28bc2538d00fc384e74a49537b9740530fdf5f4c15a42906a864f4252-ol8_x86_64_olcne12
olcne-1.2.3-9.el8.src.rpm6e043b86dd857cf37c66c9774a11a4eec34f98edf7903db19455992fcedfbe88-ol8_x86_64_olcne12
yq-3.4.0-2.el8.src.rpmfde540d1dc03fd716216f694c94ff0413c94f57cdac57781ec440703b59c49f9-ol8_x86_64_olcne12
yq-3.4.0-2.el8.src.rpmfde540d1dc03fd716216f694c94ff0413c94f57cdac57781ec440703b59c49f9-ol8_x86_64_olcne13
conmon-2.0.20-4.el8.x86_64.rpm6ee3c5d67c40f640c9c3d7de3fa0d7fea66310745e90396f2a2a66c466da68eb-ol8_x86_64_olcne12
conmon-2.0.21-4.el8.x86_64.rpm2bf956ee6472bcdd29d154d2fdfd773ea3dda8471e3e3e5d2960a2eb3742a37e-ol8_x86_64_olcne12
coredns-1.7.0-1.el8.x86_64.rpm2b8157ce02742b371e0c8a3535ecee4323e41f7aa133a177bcff62ca48a89584-ol8_x86_64_olcne12
coredns-1.7.0-1.el8.x86_64.rpm2b8157ce02742b371e0c8a3535ecee4323e41f7aa133a177bcff62ca48a89584-ol8_x86_64_olcne13
cri-o-1.18.4-2.el8.x86_64.rpma11021dbf68763550aeddc599304c9870c64b0f66959ccf753ca3c48989020fb-ol8_x86_64_olcne12
cri-tools-1.18.0-2.el8.x86_64.rpm7b15ad31798fae6e0e09f24f78384342776ec3b82a15531a95a34c8c852d55e8-ol8_x86_64_olcne12
etcd-3.4.3-1.0.5.el8.x86_64.rpmc37220255d39649ddf1354209d33ee3a84cb1c29615e4d57ecd5b5f5a8ad8e75-ol8_x86_64_olcne12
flannel-0.12.0-2.el8.x86_64.rpm37f357b6b8096aafee58a7d9654483fbe55b13a7c40afc9cf660f2ebc429cd4f-ol8_x86_64_olcne12
helm-3.3.4-2.el8.x86_64.rpm08f779dbc24e6b0ab2e819eb76bbe2cf5ad989ca79eeea302ede09192560135c-ol8_x86_64_olcne12
helm-3.3.4-2.el8.x86_64.rpm08f779dbc24e6b0ab2e819eb76bbe2cf5ad989ca79eeea302ede09192560135c-ol8_x86_64_olcne13
istio-1.7.3-1.0.2.el8.x86_64.rpme6ad2ca8a73cb41674d8acdb6d63e341c2e7a1fee99c3a062c4d1ea4d1881344-ol8_x86_64_olcne12
istio-istioctl-1.7.3-1.0.2.el8.x86_64.rpm2462095e4988fb3336f32aacb84ce3eb881e38ff19a9e34cd1fa04594bbae93f-ol8_x86_64_olcne12
istio-mixc-1.7.3-1.0.2.el8.x86_64.rpmf7390a94aea9b4231837fdc05b69798803932d11b3a192ba893ef7eb2cf82593-ol8_x86_64_olcne12
istio-mixs-1.7.3-1.0.2.el8.x86_64.rpm7ef2b72a3b914df24cdcf7f909cae8195ff37077d18dfff092ac427d17988d2f-ol8_x86_64_olcne12
istio-pilot-agent-1.7.3-1.0.2.el8.x86_64.rpm2f75b134ccf6dec248f243131567ecf50f777dd6b5bb4955027bd1ab025bf5be-ol8_x86_64_olcne12
istio-pilot-discovery-1.7.3-1.0.2.el8.x86_64.rpmb6bac4590567af08d1b12f82fb956e14b8f81cb8a85f50fd4981782b515e58cd-ol8_x86_64_olcne12
kata-1.11.5-4.el8.x86_64.rpm718612c95e4057b4a9712baff0f46ec087506d622b4c4f877045be080822f85a-ol8_x86_64_olcne12
kata-agent-1.11.5-2.el8.x86_64.rpm2506f3b561a6843ba8b1dd9fdd98b3bb5b64f324e1b7a79610193db2b6c056d5-ol8_x86_64_olcne12
kata-image-1.11.5-2.2.ol8_202104281558.x86_64.rpm2f3784ffa263c9b0f59c97573bb0c409577020286c03f05946e937702fc163b1-ol8_x86_64_olcne12
kata-ksm-throttler-1.11.5-2.el8.x86_64.rpm06c5155f2e455c25f109d5ffb9cde7ab3378f3a92a4be23312b0a8a73a8e9d1e-ol8_x86_64_olcne12
kata-proxy-1.11.5-2.el8.x86_64.rpm8fd07d204b2ec4823312402ae4eadb25f740b0e317cf12c80cc136ce846f6071-ol8_x86_64_olcne12
kata-runtime-1.11.5-2.el8.x86_64.rpm4371770f0bed171f7a297d5b1336256e4bdeb8478956dfdb1d3c9c15fb333452-ol8_x86_64_olcne12
kata-shim-1.11.5-2.el8.x86_64.rpm460288ae3c61e8d175300a7e9fa44c4ea483016003897d2c31d15e0f5313fe20-ol8_x86_64_olcne12
kubeadm-1.18.18-2.el8.x86_64.rpm67c32e3f03eda8123347ad5528b770db1fbcba91e450994b6726d2b9f6b1cee0-ol8_x86_64_olcne12
kubectl-1.18.18-2.el8.x86_64.rpmb249ed285ad2a7e05fe01733cd6dfc1e055feb40ce3e768dda729cd588a5d062-ol8_x86_64_olcne12
kubelet-1.18.18-2.el8.x86_64.rpm53facd67cdeef8ad21d7ddcccb7daab0710d17a3c4d443179e8fafe50747f236-ol8_x86_64_olcne12
kubernetes-cni-0.8.0-3.el8.x86_64.rpmc776acc2ee83d73ed9d39db8ac8dc21be59e2e474cf1e32d11902ef3acdd7472-ol8_x86_64_olcne12
kubernetes-cni-plugins-0.8.7-2.el8.x86_64.rpmee646635797be02d8356dac6b568e1d96a772afe7fd98028f42ab894cd413f6d-ol8_x86_64_olcne12
kubernetes-dashboard-2.0.3-2.el8.x86_64.rpm6e80e4854b672d50fbdeb04ba459d3c90eff1a7b5c8126757552ec0b2876af4f-ol8_x86_64_olcne12
olcne-agent-1.2.3-9.el8.x86_64.rpm452af749b6a2cee9cdefcea921b7bee0c2b33e1cdc40b2ef6e1bc015e2b5be8c-ol8_x86_64_olcne12
olcne-api-server-1.2.3-9.el8.x86_64.rpme9b189360b78e7e0ef320dcfa8d23f5a461c7246e69e7269ceee8ab726b0e21b-ol8_x86_64_olcne12
olcne-istio-chart-1.2.3-9.el8.x86_64.rpm31a21dc5401e4e6203c2c347db30b98268cdb95babf32bb9c79f6fe65927ddfe-ol8_x86_64_olcne12
olcne-nginx-1.2.3-9.el8.x86_64.rpmcfdfd692c477507ac841f0965c38a0babf8f7c8b28f5cfaa822e65ad4e58ccd0-ol8_x86_64_olcne12
olcne-prometheus-chart-1.2.3-9.el8.x86_64.rpm81d86e41a0f5362e4e09a586d3c82050eac66b7e7147423b882f94b0d8e3adb6-ol8_x86_64_olcne12
olcne-utils-1.2.3-9.el8.x86_64.rpmc1cf5746f2c395f2e29f467a69935f10f518e64fee4984f374602cb882cfe68d-ol8_x86_64_olcne12
olcnectl-1.2.3-9.el8.x86_64.rpmfbb9897c9fd4a933e701068490db99742420fe63b7a078090352ce6f5e6db30d-ol8_x86_64_olcne12
yq-3.4.0-2.el8.x86_64.rpma0242fd94a0f563f82e36690922313d47b698e0572107ded8d43e59a27618135-ol8_x86_64_olcne12
yq-3.4.0-2.el8.x86_64.rpma0242fd94a0f563f82e36690922313d47b698e0572107ded8d43e59a27618135-ol8_x86_64_olcne13



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete