ELSA-2023-12354

ELSA-2023-12354 - istio security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-06-02

Description


istio
[1.16.4-1]
- Added Oracle specific files for 1.16.4-1

kubernetes
[1.25.7-2]
- libct/cg: add misc controller to v1 drivers (upstream runc patch)

olcne
[1.6.1-9]
- Updated the CVE ID's in Istio-1.16.4 changelog entry

[1.6.1-8]
- Update Istio config to include 1.15.7 to support upgrade from 1.5.x to 1.6.x

[1.6.1-7]
- Bugfix:Append a slash in oci-instance-metada query url

[1.6.1-6]
- Fixed helm installation in OLCNE upgrade

[1.6.1-5]
- Deprecate oci-private-key in favour of oci-private-key-file
- Updated olcne_version argument in olcnectl provision to support

[1.6.1-4]
- Update Istio version to 1.16.4 to address CVE's
- CVE-2023-27496
- CVE-2023-27488
- CVE-2023-27493
- CVE-2023-27492
- CVE-2023-27491
- CVE-2023-27487

[1.6.1-3]
- Resolved the issue to install multiple network cards using multus

[1.6.1-2]
- Update kubelet for upstream runc misc cgroups patch

[1.6.1-1]
- Fix the bug olcnectl provision fails if ol8_developer does not exist


Related CVEs


CVE-2023-27496
CVE-2023-27488
CVE-2023-27493
CVE-2023-27487
CVE-2023-27491
CVE-2023-27492

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) istio-1.16.4-1.el8.src.rpmcd6da4cb9e568e2d1560110198a17ef3ae521ce79cccec9bf8606acffbc5ac12-ol8_x86_64_olcne16
kubernetes-1.25.7-2.el8.src.rpmc7268144f52c1b98409badccac772ffe359602b1137c7b33890fd276961b1fac-ol8_x86_64_olcne16
olcne-1.6.1-9.el8.src.rpm957aa254a358b62b36616ba4c91c79e0f2ff6bd056c0ca6e3220f47a07c4a5e6-ol8_x86_64_developer_olcne
olcne-1.6.1-9.el8.src.rpm957aa254a358b62b36616ba4c91c79e0f2ff6bd056c0ca6e3220f47a07c4a5e6-ol8_x86_64_olcne16
istio-1.16.4-1.el8.x86_64.rpm86ce7eda5c22af9acd333808bfe38f127427689c220c1b98286804757e4679b2-ol8_x86_64_olcne16
istio-istioctl-1.16.4-1.el8.x86_64.rpmb644f015a91d2263182d9aef982fbb621c906c2692775431c8f6297661e1ec6b-ol8_x86_64_olcne16
kubeadm-1.25.7-2.el8.x86_64.rpm434f713f8206f1a8bafdd9c64a0522cba9a35129651fc8fd69f9326e0d5cfe8a-ol8_x86_64_olcne16
kubectl-1.25.7-2.el8.x86_64.rpm2a0efd99f049adcac4160c1820e1d1f468c3296ab58b8d88e2c90668780cb3c4-ol8_x86_64_olcne16
kubelet-1.25.7-2.el8.x86_64.rpme4106d1595375d8cb78c5872b36574c0222536d8d98353fd0392542b406d4d3d-ol8_x86_64_olcne16
olcne-agent-1.6.1-9.el8.x86_64.rpmd0952793f3beea20dac5839c24238d7a0a8049078e92343f375daf0644ec14dc-ol8_x86_64_olcne16
olcne-api-server-1.6.1-9.el8.x86_64.rpmbf43bb730a3cb35cf7bceb7fd29d1360aba20b8b1947aa56a9532d6568d0f3ec-ol8_x86_64_olcne16
olcne-calico-chart-1.6.1-9.el8.x86_64.rpm770514579eff9b3638488ecdd4716099a71065fb5b82ba1605754e96a541ff3b-ol8_x86_64_olcne16
olcne-gluster-chart-1.6.1-9.el8.x86_64.rpm5e100a6737f875665a5b3fcb437fd7e03aa04ffac7dbb3eaf91ca9247c9a7c5a-ol8_x86_64_olcne16
olcne-grafana-chart-1.6.1-9.el8.x86_64.rpmb5f3709e09bd64e3529232d044b64ad87e2101df34fcb3e27d9a013641dd95c9-ol8_x86_64_olcne16
olcne-istio-chart-1.6.1-9.el8.x86_64.rpmafa1513e3352f5e009340013f7f6267da071ecc7d69caba245eabc765595dc1e-ol8_x86_64_olcne16
olcne-metallb-chart-1.6.1-9.el8.x86_64.rpm88f615247247ddccd4edad6a99bdb004ae9d07f4a503b202ab754aa53ab52a15-ol8_x86_64_olcne16
olcne-multus-chart-1.6.1-9.el8.x86_64.rpm6e86a6910a481e71231275599321f06892511a69b9868724f115953ce28ad83e-ol8_x86_64_olcne16
olcne-nginx-1.6.1-9.el8.x86_64.rpm09d41110cb7a21190d083d3ac4f62623d8045be96c1bb58e1c58350fc5da1ca0-ol8_x86_64_olcne16
olcne-oci-ccm-chart-1.6.1-9.el8.x86_64.rpmf055c784f416cdae75c34981e79cb7bcad071e81b8e8f8b9965ea37bf9ac2f38-ol8_x86_64_olcne16
olcne-olm-chart-1.6.1-9.el8.x86_64.rpmd4dacb9c89ea39222b33b07fe1897e2f931f6076f4f061e702f4401d4e73e89b-ol8_x86_64_olcne16
olcne-prometheus-chart-1.6.1-9.el8.x86_64.rpmee598213a59714af3d9bf64b3e155bc5d400920b6317213ede0eafde99bfc638-ol8_x86_64_olcne16
olcne-utils-1.6.1-9.el8.x86_64.rpm9afeb5742d01cd33006ed2b3980d8a6693375b53bed5bb396966f796f3bbd717-ol8_x86_64_olcne16
olcnectl-1.6.1-9.el8.x86_64.rpm9bab5c278bb247b7777d0eb18349097014500de07195c58387e8ae0c48e37ef7-ol8_x86_64_olcne16



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete