ELSA-2023-13053

ELSA-2023-13053 - conmon security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-12-19

Description


conmon
[2.1.3-7]
- Resolve CVE-2023-39325

[2.1.3-6]
- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile

[2.1.3-5]
- Add systemd-devel as build requirement

[2.1.3-4]
- Add support ARM build

cri-o
[1.26.3-3]
- Resolve CVE-2023-39325

[1.26.3-2]
- Add support for ARM build

cri-tools
[1.26.1-3]
- Resolve CVE-2023-39325

[1.26.1-2]
- Add ARM build support

etcd
[3.5.9-2]
- Bump up version

[3.5.9-1]
- Added Oracle specific build files

flannel-cni-plugin
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add ARM build support

helm
[3.12.0-3]
- address CVE-2023-44487 and CVE-2023-39325

[-]
- Add support for ARM build

istio
[1.17.8-1]
- Added Oracle specific files for 1.17.8-1

kata
[1.12.1-14]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-13]
- Rebuild kata to fix timestamp issue

[1.12.1-12]
- Add support for ARM build

kata-agent
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in kata-image specfile

[1.12.1-7]
- Add support for ARM build

kata-image
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in specfile

[1.12.1-7]
- Add support for ARM build

kata-ksm-throttler
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-proxy
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-runtime
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-shim
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kubernetes
[1.26.10-2]
- Allow dashes DNS image

[1.26.10-1]
- Added Oracle specific build files for Kubernetes

kubernetes-cni
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add support for ARM build

kubernetes-cni-plugins
[1.2.0-4]
- Fix go.mod

[1.2.0-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.2.0-2]
- Add support for ARM build

[1.2.0-1]
- Added Oracle specific build files for Kubernetes CNI Plugins

kubevirt
[0.58.0-4]
- Updated to address CVE-2023-44487 and CVE-2023-39325

olcne
[1.7.5-17]
- Fix update issue from 1.6.x -> 1.7.5

[1.7.5-16]
- Pass imagetag to the metallb tool that converts configmap to crs

[1.7.5-15]
- Fix metallb upgrade failure when proxy is needed

[1.7.5-14]
- Update conmon to 2.1.3-7 in scripts

[1.7.5-13]
- Update module-operator to address CVE-2023-44487, CVE-2023-39325

[1.7.5-12]
- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-11]
- Update multus-cni 4.0.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-10]
- Update metallb 0.13.9 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-9]
- Update externalip-webhook 1.0.0 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-8]
- Update calico-3.25.0 and 3.25.1 to address CVE-2023-44487, CVE-2023-39325

[1.7.5-7]
- Update rook-1.10.9 and 1.11.6 to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-6]
- update configmap-registry to 1.28.0 and update olm 0.23.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-5]
- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's
- CVE-2023-44487
- CVE-2023-39325

[1.7.5-4]
- update helm 3.12.0 to Address CVE-2023-44487 and CVE-2023-39325

[1.7.5-3]
- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-2]
- Add olm 0.23.1 charts

[1.7.5-1]
- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325

yq
[4.34.1-3]
- address CVE-2023-44487 and CVE-2023-3932A

[4.34.1-2]
- Add support for ARM build


Related CVEs


CVE-2023-39325
CVE-2023-44487

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) yq-4.34.1-3.el9.src.rpmbe2f7a64170ea5cfb53dd2822408e756a6aa8b0d0b8170d0bd68808ef423db28-ol9_aarch64_olcne18
yq-4.34.1-3.el9.aarch64.rpmee857ec2a65c8a7757db3d97903c0763c73e763bed21e616760bcc21b3f2f934-ol9_aarch64_olcne18
Oracle Linux 9 (x86_64) conmon-2.1.3-7.el9.src.rpma2448a609c0a244925a34c85689c680a692aa7d377c0178c70506f9d80b47bb2-ol9_x86_64_olcne17
cri-o-1.26.3-3.el9.src.rpmdea9df25d892872b4a84f5e53758ed269279c5ef11c0ca45cf595a09bbb173e8-ol9_x86_64_olcne17
cri-tools-1.26.1-3.el9.src.rpmab79472287322d80c1792c71b0eb531a426bfec521441e4562d2d5993772bfda-ol9_x86_64_olcne17
etcd-3.5.9-2.el9.src.rpmd4a71d3eef72bbc9bc60cb29484bce2c77685797643b456522400d2107b6a699-ol9_x86_64_olcne17
flannel-cni-plugin-1.1.2-3.el9.src.rpmb5f4945d5fd90b3193dd6ed8692e66dfd4b971c581ae315ca4e5e026d5b134b6-ol9_x86_64_olcne17
helm-3.12.0-3.el9.src.rpm6a51709c448353a4e3aa760572e2dde2bdc83607a3de155724823197379b5f75-ol9_x86_64_olcne17
istio-1.17.8-1.el9.src.rpm4d590b60cd3ef3a72df757e89bc6e22b242c8b79a675ef9a9ab9e988d1a34fd0-ol9_x86_64_olcne17
kata-1.12.1-14.el9.src.rpmeeeffc29e9b65de2c73527a89c627d3408ce9729dbd271e9fa0e6109bea43523-ol9_x86_64_olcne17
kata-agent-1.12.1-9.el9.src.rpm9667d89986eee56e0ef3ac07d000ce5af7ee4fc7bdf9e72cba1d3ef890351ff4-ol9_x86_64_olcne17
kata-image-1.12.1-9.9.ol9_202311161804.src.rpm3fbf489a6ebae5e2d9f83f5abd4e6e75a90f4826c0e5267244c3ea0b55b88b46-ol9_x86_64_olcne17
kata-ksm-throttler-1.12.1-9.el9.src.rpm1db9dd00ed4afbcb74e34135685bd07ac3451f545d16f2a8b1a8805ba48e35b3-ol9_x86_64_olcne17
kata-proxy-1.12.1-9.el9.src.rpmadaec4c5c7f6e55ddc1905235c4773d8640b75b0c860fc901c206a40299792cf-ol9_x86_64_olcne17
kata-runtime-1.12.1-9.el9.src.rpm275d3d606ba7be0b3928d8b5b1a44e77eb5fc85df675d069bd2a469af6c664c7-ol9_x86_64_olcne17
kata-shim-1.12.1-9.el9.src.rpm79e91f0fef8ac90fee341db2b66260370e03da28bc38a7eee0f471f9769d3654-ol9_x86_64_olcne17
kubernetes-1.26.10-2.el9.src.rpm35fb4820823b47eab5fd498996d186d9c4f572b1694d8badffd666e8b6e99027-ol9_x86_64_olcne17
kubernetes-cni-1.1.2-3.el9.src.rpm22b27363e2e8eace12dc581015c8cd774ff35eb78f06e175e6e265f8770afe81-ol9_x86_64_olcne17
kubernetes-cni-plugins-1.2.0-4.el9.src.rpm2f776e9a35d52e43eac9d22d0d6c2cae7905461b1ef653a5d5da04066c38d638-ol9_x86_64_olcne17
kubevirt-0.58.0-4.el9.src.rpmfd552c7db52121960bb32f96944e087a2903a3dc9804310603f1345d6b1a3b17-ol9_x86_64_olcne17
olcne-1.7.5-17.el9.src.rpm158d3c66b50bc74f4e38b5a26324479f0f2012f6fb4762851a4a9db62f807e32-ol9_x86_64_olcne17
yq-4.34.1-3.el9.src.rpm19232fa042e484412b0819386511cca014c70c20d2e2d767653a06f4c37e7647-ol9_x86_64_olcne17
yq-4.34.1-3.el9.src.rpmbe2f7a64170ea5cfb53dd2822408e756a6aa8b0d0b8170d0bd68808ef423db28-ol9_x86_64_olcne18
conmon-2.1.3-7.el9.x86_64.rpm8c5f7f6a1ea5f220acc07b7ba997ca06caaa9e9e4366296058d086f9a19676e7-ol9_x86_64_olcne17
cri-o-1.26.3-3.el9.x86_64.rpm57606ea9d5bd8210fd3ab66ec191d7dd3427557b6123d8758f3f3bd09e7e30af-ol9_x86_64_olcne17
cri-tools-1.26.1-3.el9.x86_64.rpme49c462b2070cbb12cf4f18b7629b8cba8ac5f2d60c3b6f6648c6fe3538cc6f4-ol9_x86_64_olcne17
etcd-3.5.9-2.el9.x86_64.rpmecdf357756c04f3d74f3674ccaaccc51165038b64eb37e09aed1e5c3a9cc1394-ol9_x86_64_olcne17
flannel-cni-plugin-1.1.2-3.el9.x86_64.rpm842fedd6634264a7e2e64f86b25a5bd20d35fcd2da06b67ca0b0df4d7ced6405-ol9_x86_64_olcne17
helm-3.12.0-3.el9.x86_64.rpm00940554d51f28a0bf6cd3068c885cd92995701bf477fc349c3ba006fc11455e-ol9_x86_64_olcne17
istio-1.17.8-1.el9.x86_64.rpm613107a0c79e6a83a873c8d53a72c85f354073a02a0a7008821a4e909290adf0-ol9_x86_64_olcne17
istio-istioctl-1.17.8-1.el9.x86_64.rpmab349fb6eaa9f082dd0c69619c81b72fa6777eced10329cdda98dd6c027de1e2-ol9_x86_64_olcne17
kata-1.12.1-14.el9.x86_64.rpm146475c98ede7d7734d0630c9c4fec126b93b9ce276ba09c3dff7f11cbd6058f-ol9_x86_64_olcne17
kata-agent-1.12.1-9.el9.x86_64.rpm659abe71c0c7e676d94e352b1817e3741056e9ca68eb7a174e2acb3e37a8562a-ol9_x86_64_olcne17
kata-image-1.12.1-9.9.ol9_202311161804.x86_64.rpm3f0f4843b703db4dc33420f75b21167cc91b461a26ec602c185c03e663a98a04-ol9_x86_64_olcne17
kata-ksm-throttler-1.12.1-9.el9.x86_64.rpmc28af3d59d5c741936397a8bfc238f60de9d0501905435fb7de80fe546114947-ol9_x86_64_olcne17
kata-proxy-1.12.1-9.el9.x86_64.rpmdcc71a3d62f67e200fa5c33b874bc5ef8afefe8c7a2de1b036cb9602b51bab01-ol9_x86_64_olcne17
kata-runtime-1.12.1-9.el9.x86_64.rpm009d1988e54bf495ced395991f79e76f36ed8b20df321024c6bc261d959d1666-ol9_x86_64_olcne17
kata-shim-1.12.1-9.el9.x86_64.rpm3086ac11868194adcf295c058b7918935586bfa0571e1d408b3228e59c59e12f-ol9_x86_64_olcne17
kubeadm-1.26.10-2.el9.x86_64.rpm4b881da7965c940ec47f7e59d0c73236b37efe2512f675eee6ab206efdc972ff-ol9_x86_64_olcne17
kubectl-1.26.10-2.el9.x86_64.rpm0ab018cd8cbb49db66b0ae2f2f67b57f0f9b912b0727910bd5f9b10378468357-ol9_x86_64_olcne17
kubelet-1.26.10-2.el9.x86_64.rpm06e8a77e0a952bd31b356da0ab93cc927e1af653e9e4cd2da6f41ee286888131-ol9_x86_64_olcne17
kubernetes-cni-1.1.2-3.el9.x86_64.rpm068205ee14a92fb16ef1fd4846713eaea0b78b5f8f45404b3a0ee1eb066e4557-ol9_x86_64_olcne17
kubernetes-cni-plugins-1.2.0-4.el9.x86_64.rpmc0be5ab8a0fa430f6e53b90c9697653048660904dae978d37904b6407f214a6e-ol9_x86_64_olcne17
olcne-agent-1.7.5-17.el9.x86_64.rpmfb9a5564dfd50186f1643c4a6bc576680b7828c0b4ba87af39da649061664abd-ol9_x86_64_olcne17
olcne-api-server-1.7.5-17.el9.x86_64.rpm8be6fb9c54da6a80d86a41b84900007ac4bb8ff9ad6b49ca236b9f306bb445f2-ol9_x86_64_olcne17
olcne-calico-chart-1.7.5-17.el9.x86_64.rpm7d248519b5581150b448fe286a97c0e1c2939c4bf81d45ae9772e87c8dd5abfe-ol9_x86_64_olcne17
olcne-gluster-chart-1.7.5-17.el9.x86_64.rpm9b9fc27dc9408160a9a1bd807201d4a308ba661abccef1fc5e1957aa05280de8-ol9_x86_64_olcne17
olcne-grafana-chart-1.7.5-17.el9.x86_64.rpma1401e1707f185eea3a58b56728db7558e006f7281e99301f889fe7e2761c1db-ol9_x86_64_olcne17
olcne-istio-chart-1.7.5-17.el9.x86_64.rpm74629fd9a4cee7245d50beff55999bb9b7d6c7688aa46841d2f31228abe4a1df-ol9_x86_64_olcne17
olcne-kubevirt-chart-1.7.5-17.el9.x86_64.rpm24a7eef9b77848c51c8023014274e9b09799b7dfb2e0a95b6a1c0348cad4028b-ol9_x86_64_olcne17
olcne-metallb-chart-1.7.5-17.el9.x86_64.rpmb850d5795f7b6a44d4691dea8dd8284ab38b78fbde78e312e8f6b9652d4406d5-ol9_x86_64_olcne17
olcne-multus-chart-1.7.5-17.el9.x86_64.rpme21f2e67bb22290261e3fa5da4299bc536c6bacd5fb1221dda76b28c9cef78ac-ol9_x86_64_olcne17
olcne-nginx-1.7.5-17.el9.x86_64.rpmaaf6682c0b132fd9c65be36c4a0a3ff8b422734cb1ad257e0ed32e3a1e01c4e9-ol9_x86_64_olcne17
olcne-oci-ccm-chart-1.7.5-17.el9.x86_64.rpme532393e94a3318a62e657d07ff24c39756cce23ac1851a0bb3b212dc0d66558-ol9_x86_64_olcne17
olcne-olm-chart-1.7.5-17.el9.x86_64.rpm3c2c9560d3e87df0becf2ee06377757e9d1236dc03ce2f4db2fb88525a6f1e3c-ol9_x86_64_olcne17
olcne-prometheus-chart-1.7.5-17.el9.x86_64.rpm54972bc46fb928ee267c7603c8aab2b1283bd8062a136126d1b300a7d498e4ad-ol9_x86_64_olcne17
olcne-rook-chart-1.7.5-17.el9.x86_64.rpm44cc476aacafb1282a341ff40fc7a9b381c38c9eeb08ba0b3b1ad6a1c20d8a49-ol9_x86_64_olcne17
olcne-utils-1.7.5-17.el9.x86_64.rpmeb4f01242f0f0044d7a37f47b46e19344f3e551de050b4625b5f20899649fdac-ol9_x86_64_olcne17
olcnectl-1.7.5-17.el9.x86_64.rpm4ced32b303f573eae1a293154e86008f44643f9b8e7e9be667e7fb1d33365f1e-ol9_x86_64_olcne17
virtctl-0.58.0-4.el9.x86_64.rpmd93068fb03192ade1510539a4d05e4c234c2cb70a67b347d229fb84570af3c05-ol9_x86_64_olcne17
yq-4.34.1-3.el9.x86_64.rpm335a0264d4254e7f617be68942f377e7655fb8ef53c9e4010ca305ddc354e1fb-ol9_x86_64_olcne17
yq-4.34.1-3.el9.x86_64.rpm335a0264d4254e7f617be68942f377e7655fb8ef53c9e4010ca305ddc354e1fb-ol9_x86_64_olcne18



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete