ELSA-2023-13053

ELSA-2023-13053 - conmon security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-12-19

Description


conmon
[2.1.3-7]
- Resolve CVE-2023-39325

[2.1.3-6]
- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile

[2.1.3-5]
- Add systemd-devel as build requirement

[2.1.3-4]
- Add support ARM build

cri-o
[1.26.3-3]
- Resolve CVE-2023-39325

[1.26.3-2]
- Add support for ARM build

cri-tools
[1.26.1-3]
- Resolve CVE-2023-39325

[1.26.1-2]
- Add ARM build support

etcd
[3.5.9-2]
- Bump up version

[3.5.9-1]
- Added Oracle specific build files

flannel-cni-plugin
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add ARM build support

helm
[3.12.0-3]
- address CVE-2023-44487 and CVE-2023-39325

[-]
- Add support for ARM build

istio
[1.17.8-1]
- Added Oracle specific files for 1.17.8-1

kata
[1.12.1-14]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-13]
- Rebuild kata to fix timestamp issue

[1.12.1-12]
- Add support for ARM build

kata-agent
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in kata-image specfile

[1.12.1-7]
- Add support for ARM build

kata-image
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in specfile

[1.12.1-7]
- Add support for ARM build

kata-ksm-throttler
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-proxy
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-runtime
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-shim
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kubernetes
[1.26.10-2]
- Allow dashes DNS image

[1.26.10-1]
- Added Oracle specific build files for Kubernetes

kubernetes-cni
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add support for ARM build

kubernetes-cni-plugins
[1.2.0-4]
- Fix go.mod

[1.2.0-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.2.0-2]
- Add support for ARM build

[1.2.0-1]
- Added Oracle specific build files for Kubernetes CNI Plugins

kubevirt
[0.58.0-4]
- Updated to address CVE-2023-44487 and CVE-2023-39325

olcne
[1.7.5-17]
- Fix update issue from 1.6.x -> 1.7.5

[1.7.5-16]
- Pass imagetag to the metallb tool that converts configmap to crs

[1.7.5-15]
- Fix metallb upgrade failure when proxy is needed

[1.7.5-14]
- Update conmon to 2.1.3-7 in scripts

[1.7.5-13]
- Update module-operator to address CVE-2023-44487, CVE-2023-39325

[1.7.5-12]
- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-11]
- Update multus-cni 4.0.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-10]
- Update metallb 0.13.9 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-9]
- Update externalip-webhook 1.0.0 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-8]
- Update calico-3.25.0 and 3.25.1 to address CVE-2023-44487, CVE-2023-39325

[1.7.5-7]
- Update rook-1.10.9 and 1.11.6 to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-6]
- update configmap-registry to 1.28.0 and update olm 0.23.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-5]
- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's
- CVE-2023-44487
- CVE-2023-39325

[1.7.5-4]
- update helm 3.12.0 to Address CVE-2023-44487 and CVE-2023-39325

[1.7.5-3]
- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-2]
- Add olm 0.23.1 charts

[1.7.5-1]
- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325

yq
[4.34.1-3]
- address CVE-2023-44487 and CVE-2023-3932A

[4.34.1-2]
- Add support for ARM build


Related CVEs


CVE-2023-39325
CVE-2023-44487

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (x86_64) conmon-2.1.3-7.el9.src.rpmd3012b22946dc557da9c85565f4d9e11-ol9_x86_64_olcne17
cri-o-1.26.3-3.el9.src.rpma15e19beac69627884166fb1da6e0339-ol9_x86_64_olcne17
cri-tools-1.26.1-3.el9.src.rpm1e3d8219e7d475e7210841a2272cf936-ol9_x86_64_olcne17
etcd-3.5.9-2.el9.src.rpm3cb924ce2e45dfd2a76d266d2069c2c9-ol9_x86_64_olcne17
flannel-cni-plugin-1.1.2-3.el9.src.rpmfd46af822e745b4ede198d9baa4311bf-ol9_x86_64_olcne17
helm-3.12.0-3.el9.src.rpm0297c909fb6eb664f5775c9c11429f2d-ol9_x86_64_olcne17
istio-1.17.8-1.el9.src.rpm2f91e89b78c36b49f48c502f6dd034ae-ol9_x86_64_olcne17
kata-1.12.1-14.el9.src.rpme2fa244bc213582798baedb12a1b833a-ol9_x86_64_olcne17
kata-agent-1.12.1-9.el9.src.rpmfb7a53b50e523eb92e3d57307ed91b6d-ol9_x86_64_olcne17
kata-image-1.12.1-9.9.ol9_202311161804.src.rpm34f8d83a98b9fec285fc9e495e009b89-ol9_x86_64_olcne17
kata-ksm-throttler-1.12.1-9.el9.src.rpm640ed757843fa3f14f79deebe2c3dcfa-ol9_x86_64_olcne17
kata-proxy-1.12.1-9.el9.src.rpm626e6c97e3761be5a7d833d97b9ef40b-ol9_x86_64_olcne17
kata-runtime-1.12.1-9.el9.src.rpme29f383334e5ee40fbe036dd59f30ae9-ol9_x86_64_olcne17
kata-shim-1.12.1-9.el9.src.rpm22b9f69394fc9f8d95546c3b2f942ffe-ol9_x86_64_olcne17
kubernetes-1.26.10-2.el9.src.rpmc053c55cf2ac90106cc542b527bd419f-ol9_x86_64_olcne17
kubernetes-cni-1.1.2-3.el9.src.rpmad7d4a2d55570c571b5798cf3713befc-ol9_x86_64_olcne17
kubernetes-cni-plugins-1.2.0-4.el9.src.rpm880aed3c875d726137eadee7a86efdf9-ol9_x86_64_olcne17
kubevirt-0.58.0-4.el9.src.rpm58d4ddd67b7aa7731aeb4bd32d590add-ol9_x86_64_olcne17
olcne-1.7.5-17.el9.src.rpmdc97b18cf101661354671f5af45cef81-ol9_x86_64_olcne17
yq-4.34.1-3.el9.src.rpm59f678f64d6ec5a9ed768b06ee717520-ol9_x86_64_olcne17
conmon-2.1.3-7.el9.x86_64.rpmced6c141e3544547a4b388eb09bdbaf2-ol9_x86_64_olcne17
cri-o-1.26.3-3.el9.x86_64.rpmc0679b24c4daf7ad0f5d2a2e7555440d-ol9_x86_64_olcne17
cri-tools-1.26.1-3.el9.x86_64.rpm5c01eeac5633209f072ad8f74c72901f-ol9_x86_64_olcne17
etcd-3.5.9-2.el9.x86_64.rpm83d7de3f4861865b3f688a02ce4b1dfa-ol9_x86_64_olcne17
flannel-cni-plugin-1.1.2-3.el9.x86_64.rpmabb0eaea52158ef2b83d856887f480e0-ol9_x86_64_olcne17
helm-3.12.0-3.el9.x86_64.rpma986b1b690e9eea7f2585a6b9d1b3a51-ol9_x86_64_olcne17
istio-1.17.8-1.el9.x86_64.rpmab4a4ba8c73b8b342149cbcc0fb7ab9a-ol9_x86_64_olcne17
istio-istioctl-1.17.8-1.el9.x86_64.rpm7a57411b599393e2cf34071cfbe5ca79-ol9_x86_64_olcne17
kata-1.12.1-14.el9.x86_64.rpmed8e601a9a21360ca1e8eeadab091577-ol9_x86_64_olcne17
kata-agent-1.12.1-9.el9.x86_64.rpm486279a04c7fc9efd3f5ccb2e688160a-ol9_x86_64_olcne17
kata-image-1.12.1-9.9.ol9_202311161804.x86_64.rpmfa63d13b15284a81a62b20470fa160ef-ol9_x86_64_olcne17
kata-ksm-throttler-1.12.1-9.el9.x86_64.rpmcb59903eced8644381530196ddc0fa6d-ol9_x86_64_olcne17
kata-proxy-1.12.1-9.el9.x86_64.rpmf78b76ba8d1cb3e026591e0c66c2aefb-ol9_x86_64_olcne17
kata-runtime-1.12.1-9.el9.x86_64.rpmc5f23c748af5adc51c82ae4ef8c13679-ol9_x86_64_olcne17
kata-shim-1.12.1-9.el9.x86_64.rpm3e8be088a4de16aa837280e1a551beff-ol9_x86_64_olcne17
kubeadm-1.26.10-2.el9.x86_64.rpmd04b9dfe52c2faa0c42c512cceb924e7-ol9_x86_64_olcne17
kubectl-1.26.10-2.el9.x86_64.rpm4cd47f60ca79c6a03488eb3198bd0c99-ol9_x86_64_olcne17
kubelet-1.26.10-2.el9.x86_64.rpm6bfc9639d5beae8941d9cb37913bb74d-ol9_x86_64_olcne17
kubernetes-cni-1.1.2-3.el9.x86_64.rpmbd145b6fee5ea62526137b75829a6355-ol9_x86_64_olcne17
kubernetes-cni-plugins-1.2.0-4.el9.x86_64.rpmb55f2e82ac42be09233eae3275ac3c24-ol9_x86_64_olcne17
olcne-agent-1.7.5-17.el9.x86_64.rpmdcbe1f854f65091928b8ad60798b637d-ol9_x86_64_olcne17
olcne-api-server-1.7.5-17.el9.x86_64.rpm8b569a637fc9acd82a94a91181d1c04d-ol9_x86_64_olcne17
olcne-calico-chart-1.7.5-17.el9.x86_64.rpmb11ec213f7b84f4356ed8e0af3737352-ol9_x86_64_olcne17
olcne-gluster-chart-1.7.5-17.el9.x86_64.rpm9e50149bf3ee26b61bf6d013862f4dba-ol9_x86_64_olcne17
olcne-grafana-chart-1.7.5-17.el9.x86_64.rpm35b2ab0225975b4894c48edd66b366e4-ol9_x86_64_olcne17
olcne-istio-chart-1.7.5-17.el9.x86_64.rpmecc4fcdba67205698576f84d087fae79-ol9_x86_64_olcne17
olcne-kubevirt-chart-1.7.5-17.el9.x86_64.rpm1cddf44a30cfa17e32d74030cb20e377-ol9_x86_64_olcne17
olcne-metallb-chart-1.7.5-17.el9.x86_64.rpm898a646fdb3e67547a5475acb4c4c064-ol9_x86_64_olcne17
olcne-multus-chart-1.7.5-17.el9.x86_64.rpm9a25ebe2234196c26af8a1f53deb3dbc-ol9_x86_64_olcne17
olcne-nginx-1.7.5-17.el9.x86_64.rpmc70f1504a8afe8dda985b8e616cab7b7-ol9_x86_64_olcne17
olcne-oci-ccm-chart-1.7.5-17.el9.x86_64.rpmd1ef58eb692f727a5a84d19c62e59f1b-ol9_x86_64_olcne17
olcne-olm-chart-1.7.5-17.el9.x86_64.rpmac9067483de89d509b0a9c1a7c4565e0-ol9_x86_64_olcne17
olcne-prometheus-chart-1.7.5-17.el9.x86_64.rpmf5ce591e6fb825fc6ba5954b25e8bd3e-ol9_x86_64_olcne17
olcne-rook-chart-1.7.5-17.el9.x86_64.rpmfa8ef11198ad9ebb8f9fe220b80ea29e-ol9_x86_64_olcne17
olcne-utils-1.7.5-17.el9.x86_64.rpm4363ddcef18da171e34d5af279f6b352-ol9_x86_64_olcne17
olcnectl-1.7.5-17.el9.x86_64.rpmc947b9dfec9a5f7f5c4cd8e96a654b89-ol9_x86_64_olcne17
virtctl-0.58.0-4.el9.x86_64.rpm85df8477ed7580873d2f7a4f30620d64-ol9_x86_64_olcne17
yq-4.34.1-3.el9.x86_64.rpmd92915013e46d9f55b0eb7f2d79839b5-ol9_x86_64_olcne17



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete