ELSA-2023-12355

ELSA-2023-12355 - istio security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-06-02

Description


istio
[1.16.4-1]
- Added Oracle specific files for 1.16.4-1

kubernetes
[1.25.7-2]
- libct/cg: add misc controller to v1 drivers (upstream runc patch)

olcne
[1.6.1-9]
- Updated the CVE ID's in Istio-1.16.4 changelog entry

[1.6.1-8]
- Update Istio config to include 1.15.7 to support upgrade from 1.5.x to 1.6.x

[1.6.1-7]
- Bugfix:Append a slash in oci-instance-metada query url

[1.6.1-6]
- Fixed helm installation in OLCNE upgrade

[1.6.1-5]
- Deprecate oci-private-key in favour of oci-private-key-file
- Updated olcne_version argument in olcnectl provision to support

[1.6.1-4]
- Update Istio version to 1.16.4 to address CVE's
- CVE-2023-27496
- CVE-2023-27488
- CVE-2023-27493
- CVE-2023-27492
- CVE-2023-27491
- CVE-2023-27487

[1.6.1-3]
- Resolved the issue to install multiple network cards using multus

[1.6.1-2]
- Update kubelet for upstream runc misc cgroups patch

[1.6.1-1]
- Fix the bug olcnectl provision fails if ol8_developer does not exist


Related CVEs


CVE-2023-27488
CVE-2023-27492
CVE-2023-27491
CVE-2023-27496
CVE-2023-27493
CVE-2023-27487

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) istio-1.16.4-1.el7.src.rpm677d8576cbd77610fb304264e49d6d84-
kubernetes-1.25.7-2.el7.src.rpmac5d8b37ae6ccdef03e80755ab58d6c0-
olcne-1.6.1-9.el7.src.rpm6c565f016f64f1d4ed1ccd63a2b32222-
istio-1.16.4-1.el7.x86_64.rpmec4461e4e78b65fdf25c85fb65cf7bb3-
istio-istioctl-1.16.4-1.el7.x86_64.rpm7fb2fa2f349e4244fd5ed5b0f51bce41-
kubeadm-1.25.7-2.el7.x86_64.rpm8abe7c1721790387484f65cd29fe043b-
kubectl-1.25.7-2.el7.x86_64.rpmb75823f9c887695344e75daa0d0771bf-
kubelet-1.25.7-2.el7.x86_64.rpm7ea9178cda42c067f2b20e5efa8f4a76-
olcne-agent-1.6.1-9.el7.x86_64.rpm9690201c17f0b32e64a4cd2fbaf82748-
olcne-api-server-1.6.1-9.el7.x86_64.rpma9d5571f9b7c6d91dd28c6bae29caf55-
olcne-calico-chart-1.6.1-9.el7.x86_64.rpmdbfc4f9936637dd66a879b289597cead-
olcne-gluster-chart-1.6.1-9.el7.x86_64.rpmcbc405135c8348f40456b220e9e8a583-
olcne-grafana-chart-1.6.1-9.el7.x86_64.rpm1d65055fe6ab09d226c2b15a8e45c782-
olcne-istio-chart-1.6.1-9.el7.x86_64.rpm4fe0d1a4cd23878ce6d22fe10d3836c7-
olcne-metallb-chart-1.6.1-9.el7.x86_64.rpmb269b980178b86e28149df0a4faa6a06-
olcne-multus-chart-1.6.1-9.el7.x86_64.rpmc69011eec5c841e684db6f162655289e-
olcne-nginx-1.6.1-9.el7.x86_64.rpm1ad15188bfe3f237093dfc3cc5ca592b-
olcne-oci-ccm-chart-1.6.1-9.el7.x86_64.rpmcc580d2ebdadc178af4e6370d6f195cd-
olcne-olm-chart-1.6.1-9.el7.x86_64.rpm4da4b60266fdd6f20a0c113b42033b52-
olcne-prometheus-chart-1.6.1-9.el7.x86_64.rpmafa61767bb5ed00dc648940085e279fc-
olcne-utils-1.6.1-9.el7.x86_64.rpm5e1efbbe2f7fb1808131790a2ca8d193-
olcnectl-1.6.1-9.el7.x86_64.rpmb14d0de6fbfd1d38dff2214011ddc60c-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete