ELSA-2023-13029

ELSA-2023-13029 - olcne security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-12-07

Description


conmon
[2.1.3-7]
- Resolve CVE-2023-39325

[2.1.3-6]
- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile

[2.1.3-5]
- Add systemd-devel as build requirement

[2.1.3-4]
- Add support ARM build

[2.1.3.3]
- Add OL9 support

[2.1.3.2]
- Update inline with Linux team building conmon for all but OL7.

cri-o
[1.25.2-3]
- Resolve CVE-2023-39325

cri-tools
[1.25.0-2]
- Resolve CVE-2023-39325

flannel-cni-plugin
[1.0.1-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

helm
[3.11.1-2]
- address CVE-2023-44487 and CVE-2023-39325

istio
kata
[1.12.1-14]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-13]
- Rebuild kata to fix timestamp issue

[1.12.1-12]
- Add support for ARM build

[1.12.1-11]
- Add OL9 support

[1.12.1-10]
- Updated kata-runtime version to work with more versions of kvm_utils

kata-agent
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in kata-image specfile

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Add OL9 support

kata-image
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in specfile

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Restore OL7 and bump release

[1.12.1-5]
- Add support for Oracle Linux 9

[1.12.1-4]
- build for kata-agent-1.12.1-4

kata-ksm-throttler
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Bump releaase inline with others for reversion of removal of OL7.

[1.12.1-5]
- Add support for Oracle Linux 9

kata-proxy
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Revert OL7 removal

[1.12.1-5]
- Add support for Oracle Linux 9

kata-runtime
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Add OL9 support

[1.12.1-5]
- Updated qemu-kvm machine options to work with more versions of kvm_utils

kata-shim
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

[1.12.1-6]
- Bump releaase inline with others for reversion of removal of OL7.

[1.12.1-5]
- Add support for Oracle Linux 9

kubernetes
kubernetes-cni
[1.0.1-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

kubernetes-cni-plugins
[1.0.1-4]
- Resolve CVE-2023-44487 and CVE-2023-39325

olcne
[1.6.5-9]
- Mark container-registry as updatable

[1.6.5-9]
- update metallb 0.12.1 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-8]
- Update externalip-webhook 1.0.0-3 to address CVE-2023-44487, CVE-2023-39325

[1.6.5-7]
- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-6]
- Update rook-1.10.9 to address CVE-2023-44487, CVE-2023-39325

[1.6.5-5]
- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's
- CVE-2023-44487
- CVE-2023-39325

[1.6.5-4]
- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325

[1.6.5-3]
- update configmap-registry to 1.28.0 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-2]
- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325

[1.6.5-1]
- Update calico image versions to address golang CVE-2023-44487, CVE-2023-39325

yq
[4.34.1-3]
- address CVE-2023-44487 and CVE-2023-3932A

[4.34.1-2]
- Add support for ARM build


Related CVEs


CVE-2023-44487
CVE-2023-39325

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) conmon-2.1.3-7.el7.src.rpm566ec331ee3cc6d73b70d52182d94cb0-ol7_x86_64_olcne16
cri-o-1.25.2-3.el7.src.rpm73a96e3a776f4717a0f6e21feb276ec6-ol7_x86_64_olcne16
cri-tools-1.25.0-2.el7.src.rpmb8d1435a6f6358988a1fc30ce6b1c274-ol7_x86_64_olcne16
flannel-cni-plugin-1.0.1-3.el7.src.rpm527c2ae4e108f0f426fba80567121771-ol7_x86_64_olcne16
helm-3.11.1-2.el7.src.rpm6345993bc6073b41a2e095ca6cbe43ee-ol7_x86_64_olcne16
istio-1.16.7-2.el7.src.rpm0dcec1130bff6dc3aaa33319864503f1-ol7_x86_64_olcne16
kata-1.12.1-14.el7.src.rpm0cfe337279e61f10ae60d60fbda5874e-ol7_x86_64_olcne16
kata-agent-1.12.1-9.el7.src.rpm3ee2345707b7c66d69a9eda9ef6d53c2-ol7_x86_64_olcne16
kata-image-1.12.1-9.9.ol7_202311161803.src.rpm4031a826eb34ccce4aa4bf344feb5529-ol7_x86_64_olcne16
kata-ksm-throttler-1.12.1-9.el7.src.rpmdd0a2cff6c7d6e7b7406a5b9e28d090b-ol7_x86_64_olcne16
kata-proxy-1.12.1-9.el7.src.rpmc7a3d10009d30d2c5c79a4aea338367f-ol7_x86_64_olcne16
kata-runtime-1.12.1-9.el7.src.rpmc2399e123bdd62df49bc77e59f6cf645-ol7_x86_64_olcne16
kata-shim-1.12.1-9.el7.src.rpm53b69cee7a156ff59ff52e24be61f386-ol7_x86_64_olcne16
kubernetes-1.25.15-1.el7.src.rpmb6a0f92882e85646aba461de639b6633-ol7_x86_64_olcne16
kubernetes-cni-1.0.1-3.el7.src.rpmdfe7dd84217a9a5635238722c4b9ff57-ol7_x86_64_olcne16
kubernetes-cni-plugins-1.0.1-4.el7.src.rpme501dfbd15cd273ed59babeca30b6e83-ol7_x86_64_olcne16
olcne-1.6.5-10.el7.src.rpmc3a1d012738e2b217188835069f5291e-ol7_x86_64_olcne16
yq-4.34.1-3.el7.src.rpm95ec222f0d37e4fa89c1f1b13ae56fa2-ol7_x86_64_olcne16
conmon-2.1.3-7.el7.x86_64.rpm35f8d21e645e5ece604c86a727b08b78-ol7_x86_64_olcne16
cri-o-1.25.2-3.el7.x86_64.rpmfe21a79d8c218e512ecf9a006dec15a3-ol7_x86_64_olcne16
cri-tools-1.25.0-2.el7.x86_64.rpm7b82af4de6634d0da8a1dd03a9e13284-ol7_x86_64_olcne16
flannel-cni-plugin-1.0.1-3.el7.x86_64.rpme45a887b62976e835c68003e15f35589-ol7_x86_64_olcne16
helm-3.11.1-2.el7.x86_64.rpm94a8bcdb14889bb9e9c334a6cb90d350-ol7_x86_64_olcne16
istio-1.16.7-2.el7.x86_64.rpmdf3afcda5a6eb5e8162cfe3657947784-ol7_x86_64_olcne16
istio-istioctl-1.16.7-2.el7.x86_64.rpm931b67067c6cc0d542908290d08fdae5-ol7_x86_64_olcne16
kata-1.12.1-14.el7.x86_64.rpm26f34b2208ede87da65724c35d200ac8-ol7_x86_64_olcne16
kata-agent-1.12.1-9.el7.x86_64.rpmcb8378e3fde413e1eef7ea8e7cea999c-ol7_x86_64_olcne16
kata-image-1.12.1-9.9.ol7_202311161803.x86_64.rpm5d394b66ce0faf72b395361e533e6b41-ol7_x86_64_olcne16
kata-ksm-throttler-1.12.1-9.el7.x86_64.rpm01e05071df78d4f296e032fba7441c52-ol7_x86_64_olcne16
kata-proxy-1.12.1-9.el7.x86_64.rpmbf9464eaff86f60c0f3af5d156d7bee5-ol7_x86_64_olcne16
kata-runtime-1.12.1-9.el7.x86_64.rpm1cb1468caa9a2065ce912e8795159189-ol7_x86_64_olcne16
kata-shim-1.12.1-9.el7.x86_64.rpm51557320a8bdf79b908b4f2e71576cc1-ol7_x86_64_olcne16
kubeadm-1.25.15-1.el7.x86_64.rpm3dae50d3704c5e6f7ed0b6b84089b24e-ol7_x86_64_olcne16
kubectl-1.25.15-1.el7.x86_64.rpm178506f3c6426cb55787fad0ba62b4a1-ol7_x86_64_olcne16
kubelet-1.25.15-1.el7.x86_64.rpm32c5168a07b4de434764e6f79e5912b4-ol7_x86_64_olcne16
kubernetes-cni-1.0.1-3.el7.x86_64.rpm5032ec2658d6cc962ff823ac26146be6-ol7_x86_64_olcne16
kubernetes-cni-plugins-1.0.1-4.el7.x86_64.rpm55c4d0ea377e5a0e4a6bfea4a15b1b62-ol7_x86_64_olcne16
olcne-agent-1.6.5-10.el7.x86_64.rpm2f13577cef209f4279d9f10365e32354-ol7_x86_64_olcne16
olcne-api-server-1.6.5-10.el7.x86_64.rpmec93937638493d78b84b73d1c7517842-ol7_x86_64_olcne16
olcne-calico-chart-1.6.5-10.el7.x86_64.rpm29a51cf5534cdb866a69012e0118ad68-ol7_x86_64_olcne16
olcne-gluster-chart-1.6.5-10.el7.x86_64.rpm3108ec426776e7eae2de827f90ec48b9-ol7_x86_64_olcne16
olcne-grafana-chart-1.6.5-10.el7.x86_64.rpm96a08352dbf645e60d0cece809ceacbb-ol7_x86_64_olcne16
olcne-istio-chart-1.6.5-10.el7.x86_64.rpmbb9494dde81b797832ac6a676f478e73-ol7_x86_64_olcne16
olcne-metallb-chart-1.6.5-10.el7.x86_64.rpm9b3befb8bf2b39259423a45ae3d5d6cf-ol7_x86_64_olcne16
olcne-multus-chart-1.6.5-10.el7.x86_64.rpmf015e64a029f90e8ff1345af1785b246-ol7_x86_64_olcne16
olcne-nginx-1.6.5-10.el7.x86_64.rpm23f93480b913b5672e69129818d6b0c0-ol7_x86_64_olcne16
olcne-oci-ccm-chart-1.6.5-10.el7.x86_64.rpm60b4732b949f4287433c22b07f055392-ol7_x86_64_olcne16
olcne-olm-chart-1.6.5-10.el7.x86_64.rpm1edd2ee946feda1285d8cf35f7dc3702-ol7_x86_64_olcne16
olcne-prometheus-chart-1.6.5-10.el7.x86_64.rpmcbbcc9d11b3b066d0b446cb5c989d248-ol7_x86_64_olcne16
olcne-utils-1.6.5-10.el7.x86_64.rpm984e1fa5f9f29d7dc6847772875b66a3-ol7_x86_64_olcne16
olcnectl-1.6.5-10.el7.x86_64.rpm2877910c2c1eb420da95754f07a7e4bd-ol7_x86_64_olcne16
yq-4.34.1-3.el7.x86_64.rpmee6554e6839883a543ea8dc4c381058f-ol7_x86_64_olcne16



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete