ELSA-2023-13054

ELSA-2023-13054 - conmon security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-12-19

Description


conmon
[2.1.3-7]
- Resolve CVE-2023-39325

[2.1.3-6]
- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile

[2.1.3-5]
- Add systemd-devel as build requirement

[2.1.3-4]
- Add support ARM build

cri-o
[1.26.3-3]
- Resolve CVE-2023-39325

[1.26.3-2]
- Add support for ARM build

cri-tools
[1.26.1-3]
- Resolve CVE-2023-39325

[1.26.1-2]
- Add ARM build support

etcd
[3.5.9-2]
- Bump up version

[3.5.9-1]
- Added Oracle specific build files

flannel-cni-plugin
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add ARM build support

helm
[3.12.0-3]
- address CVE-2023-44487 and CVE-2023-39325

[-]
- Add support for ARM build

istio
[1.17.8-1]
- Added Oracle specific files for 1.17.8-1

kata
[1.12.1-14]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-13]
- Rebuild kata to fix timestamp issue

[1.12.1-12]
- Add support for ARM build

kata-agent
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in kata-image specfile

[1.12.1-7]
- Add support for ARM build

kata-image
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in specfile

[1.12.1-7]
- Add support for ARM build

kata-ksm-throttler
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-proxy
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-runtime
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-shim
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kubernetes
[1.26.10-2]
- Allow dashes DNS image

[1.26.10-1]
- Added Oracle specific build files for Kubernetes

kubernetes-cni
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add support for ARM build

kubernetes-cni-plugins
[1.2.0-4]
- Fix go.mod

[1.2.0-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.2.0-2]
- Add support for ARM build

kubevirt
[0.58.0-4]
- Updated to address CVE-2023-44487 and CVE-2023-39325

olcne
[1.7.5-17]
- Fix update issue from 1.6.x -> 1.7.5

[1.7.5-16]
- Pass imagetag to the metallb tool that converts configmap to crs

[1.7.5-15]
- Fix metallb upgrade failure when proxy is needed

[1.7.5-14]
- Update conmon to 2.1.3-7 in scripts

[1.7.5-13]
- Update module-operator to address CVE-2023-44487, CVE-2023-39325

[1.7.5-12]
- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-11]
- Update multus-cni 4.0.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-10]
- Update metallb 0.13.9 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-9]
- Update externalip-webhook 1.0.0 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-8]
- Update calico-3.25.0 and 3.25.1 to address CVE-2023-44487, CVE-2023-39325

[1.7.5-7]
- Update rook-1.10.9 and 1.11.6 to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-6]
- update configmap-registry to 1.28.0 and update olm 0.23.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-5]
- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's
- CVE-2023-44487
- CVE-2023-39325

[1.7.5-4]
- update helm 3.12.0 to Address CVE-2023-44487 and CVE-2023-39325

[1.7.5-3]
- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-2]
- Add olm 0.23.1 charts

[1.7.5-1]
- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325

yq
[4.34.1-3]
- address CVE-2023-44487 and CVE-2023-3932A

[4.34.1-2]
- Add support for ARM build


Related CVEs


CVE-2023-44487
CVE-2023-39325

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) conmon-2.1.3-7.el8.src.rpm418d75e2368469c29697972adbd8549e-ol8_x86_64_olcne16
conmon-2.1.3-7.el8.src.rpm418d75e2368469c29697972adbd8549e-ol8_x86_64_olcne17
cri-o-1.26.3-3.el8.src.rpm22eb710f7cec102335af96b16b94cddd-ol8_x86_64_olcne17
cri-tools-1.26.1-3.el8.src.rpm1032a4c320f6f4bf8cfae35fbcb5e125-ol8_x86_64_olcne17
etcd-3.5.9-2.el8.src.rpm2e9da822b17f74c5cbb21f249ce24f5d-ol8_x86_64_olcne16
etcd-3.5.9-2.el8.src.rpm2e9da822b17f74c5cbb21f249ce24f5d-ol8_x86_64_olcne17
flannel-cni-plugin-1.1.2-3.el8.src.rpm44ccc9089adc494832de76a70cb33c57-ol8_x86_64_olcne17
helm-3.12.0-3.el8.src.rpm0486261376bdb5ca006b0dfea4d6c6c2-ol8_x86_64_olcne17
istio-1.17.8-1.el8.src.rpmc952f68d91751b224b6bcce638ab826e-ol8_x86_64_olcne17
kata-1.12.1-14.el8.src.rpm81aca6a1135fed5a9a3c4e0137c37cf8-ol8_x86_64_olcne16
kata-1.12.1-14.el8.src.rpm81aca6a1135fed5a9a3c4e0137c37cf8-ol8_x86_64_olcne17
kata-agent-1.12.1-9.el8.src.rpmf3a53cd564ea7bbb919a9c72be2c5cf8-ol8_x86_64_olcne16
kata-agent-1.12.1-9.el8.src.rpmf3a53cd564ea7bbb919a9c72be2c5cf8-ol8_x86_64_olcne17
kata-image-1.12.1-9.9.ol8_202311161805.src.rpme1bd9b77a2f7a07e0c347f41493c0f00-ol8_x86_64_olcne16
kata-image-1.12.1-9.9.ol8_202311161805.src.rpme1bd9b77a2f7a07e0c347f41493c0f00-ol8_x86_64_olcne17
kata-ksm-throttler-1.12.1-9.el8.src.rpm587f2994ca670ca41e41c2dee28d2a9b-ol8_x86_64_olcne16
kata-ksm-throttler-1.12.1-9.el8.src.rpm587f2994ca670ca41e41c2dee28d2a9b-ol8_x86_64_olcne17
kata-proxy-1.12.1-9.el8.src.rpm35ef91c6137da4526b3e6abd53b6589e-ol8_x86_64_olcne16
kata-proxy-1.12.1-9.el8.src.rpm35ef91c6137da4526b3e6abd53b6589e-ol8_x86_64_olcne17
kata-runtime-1.12.1-9.el8.src.rpm272efc6d172ea7ed6e666d63cd6c77a9-ol8_x86_64_olcne16
kata-runtime-1.12.1-9.el8.src.rpm272efc6d172ea7ed6e666d63cd6c77a9-ol8_x86_64_olcne17
kata-shim-1.12.1-9.el8.src.rpm8d2de4eb6b80e475e0d0d860473d3a53-ol8_x86_64_olcne16
kata-shim-1.12.1-9.el8.src.rpm8d2de4eb6b80e475e0d0d860473d3a53-ol8_x86_64_olcne17
kubernetes-1.26.10-2.el8.src.rpmff90deb5c19d1abaeec041e9629ac108-ol8_x86_64_olcne17
kubernetes-cni-1.1.2-3.el8.src.rpm88a69fe6a537467d891dd01e367e4db0-ol8_x86_64_olcne17
kubernetes-cni-plugins-1.2.0-4.el8.src.rpma20e7df99825aec0bcaa4547f407ab92-ol8_x86_64_olcne17
kubevirt-0.58.0-4.el8.src.rpm5c6d4be813e13d0e12277a213fc90881-ol8_x86_64_olcne17
olcne-1.7.5-17.el8.src.rpmcfd91de8186aca37be549817cdb9a2a0-ol8_x86_64_olcne17
yq-4.34.1-3.el8.src.rpm03ad8136596b21c988c69a554aa67b0c-ol8_x86_64_olcne16
yq-4.34.1-3.el8.src.rpm03ad8136596b21c988c69a554aa67b0c-ol8_x86_64_olcne17
conmon-2.1.3-7.el8.x86_64.rpmcbfd9f9e5d5018ab338adc7caf28ef83-ol8_x86_64_olcne16
conmon-2.1.3-7.el8.x86_64.rpmcbfd9f9e5d5018ab338adc7caf28ef83-ol8_x86_64_olcne17
cri-o-1.26.3-3.el8.x86_64.rpmf833dd2af798bea49424f225fe8bc0ac-ol8_x86_64_olcne17
cri-tools-1.26.1-3.el8.x86_64.rpm08b045bdc4c5d10620a8cffdb68e9f07-ol8_x86_64_olcne17
etcd-3.5.9-2.el8.x86_64.rpm6af1430451ca943aaa06acd809c9ba10-ol8_x86_64_olcne16
etcd-3.5.9-2.el8.x86_64.rpm6af1430451ca943aaa06acd809c9ba10-ol8_x86_64_olcne17
flannel-cni-plugin-1.1.2-3.el8.x86_64.rpmb991ca2034a60e173e9a0aece5b6120e-ol8_x86_64_olcne17
helm-3.12.0-3.el8.x86_64.rpm8953d0572799c7c8f7892a6b6144ff36-ol8_x86_64_olcne17
istio-1.17.8-1.el8.x86_64.rpm9eb54a1d74b22d48c9a556f5c178e641-ol8_x86_64_olcne17
istio-istioctl-1.17.8-1.el8.x86_64.rpm1748a541a184e9e92d7c34d7880d6abe-ol8_x86_64_olcne17
kata-1.12.1-14.el8.x86_64.rpm38ad1edb1dc771ce8330197b8166f4e9-ol8_x86_64_olcne16
kata-1.12.1-14.el8.x86_64.rpm38ad1edb1dc771ce8330197b8166f4e9-ol8_x86_64_olcne17
kata-agent-1.12.1-9.el8.x86_64.rpm551083f6560ba18a9562e702b149dab8-ol8_x86_64_olcne16
kata-agent-1.12.1-9.el8.x86_64.rpm551083f6560ba18a9562e702b149dab8-ol8_x86_64_olcne17
kata-image-1.12.1-9.9.ol8_202311161805.x86_64.rpm0458a6b55c96181b808fba5662de5378-ol8_x86_64_olcne16
kata-image-1.12.1-9.9.ol8_202311161805.x86_64.rpm0458a6b55c96181b808fba5662de5378-ol8_x86_64_olcne17
kata-ksm-throttler-1.12.1-9.el8.x86_64.rpm75c64cbb5ee7ae0ebcad3a72326f88b7-ol8_x86_64_olcne16
kata-ksm-throttler-1.12.1-9.el8.x86_64.rpm75c64cbb5ee7ae0ebcad3a72326f88b7-ol8_x86_64_olcne17
kata-proxy-1.12.1-9.el8.x86_64.rpmdce2b6eea8465c1317c187d85ca47eaf-ol8_x86_64_olcne16
kata-proxy-1.12.1-9.el8.x86_64.rpmdce2b6eea8465c1317c187d85ca47eaf-ol8_x86_64_olcne17
kata-runtime-1.12.1-9.el8.x86_64.rpm3cd92488d294395a16b2f7fafe0e7ccd-ol8_x86_64_olcne16
kata-runtime-1.12.1-9.el8.x86_64.rpm3cd92488d294395a16b2f7fafe0e7ccd-ol8_x86_64_olcne17
kata-shim-1.12.1-9.el8.x86_64.rpm28008352aa72715d74db29f1303b127e-ol8_x86_64_olcne16
kata-shim-1.12.1-9.el8.x86_64.rpm28008352aa72715d74db29f1303b127e-ol8_x86_64_olcne17
kubeadm-1.26.10-2.el8.x86_64.rpm6c51384625819d464f39808b6510a55e-ol8_x86_64_olcne17
kubectl-1.26.10-2.el8.x86_64.rpmeffbf9ed80021ec25d19f42fd405531e-ol8_x86_64_olcne17
kubelet-1.26.10-2.el8.x86_64.rpm3d62020b614f8d1c1102fc3e5b3d2882-ol8_x86_64_olcne17
kubernetes-cni-1.1.2-3.el8.x86_64.rpm9125296b1134fb5532e9382c8f47979d-ol8_x86_64_olcne17
kubernetes-cni-plugins-1.2.0-4.el8.x86_64.rpm6cb8f917b61c16f47ef3aebc1c31ccce-ol8_x86_64_olcne17
olcne-agent-1.7.5-17.el8.x86_64.rpm95630c2418fafe1dded440ad4598cdfd-ol8_x86_64_olcne17
olcne-api-server-1.7.5-17.el8.x86_64.rpm14abb3ec5869b8f9f27e00343319775a-ol8_x86_64_olcne17
olcne-calico-chart-1.7.5-17.el8.x86_64.rpmb2a5c9fbc349002230160c6b76435280-ol8_x86_64_olcne17
olcne-gluster-chart-1.7.5-17.el8.x86_64.rpm0ac5ab08bc9d611202d34361f4fca459-ol8_x86_64_olcne17
olcne-grafana-chart-1.7.5-17.el8.x86_64.rpm3f8d7c6f61d0558067905b16aa58d39c-ol8_x86_64_olcne17
olcne-istio-chart-1.7.5-17.el8.x86_64.rpm4dbd87b303cb4906dab013a0da9b42db-ol8_x86_64_olcne17
olcne-kubevirt-chart-1.7.5-17.el8.x86_64.rpme062c82fcdb9646388a2680a58bfef6f-ol8_x86_64_olcne17
olcne-metallb-chart-1.7.5-17.el8.x86_64.rpm65dd2827628307e1f30e08a8eb1e2b09-ol8_x86_64_olcne17
olcne-multus-chart-1.7.5-17.el8.x86_64.rpm70c57a3e1231c89bde8da1c49c0cec85-ol8_x86_64_olcne17
olcne-nginx-1.7.5-17.el8.x86_64.rpmef7d315a2b08d322cbbaf9d409031347-ol8_x86_64_olcne17
olcne-oci-ccm-chart-1.7.5-17.el8.x86_64.rpm8e8594ce484f1c0ed455ca2f680bed4e-ol8_x86_64_olcne17
olcne-olm-chart-1.7.5-17.el8.x86_64.rpm431832d90a1dbb65a117acfe5321ff60-ol8_x86_64_olcne17
olcne-prometheus-chart-1.7.5-17.el8.x86_64.rpm9556f6040f869b198cf319c13cb24eba-ol8_x86_64_olcne17
olcne-rook-chart-1.7.5-17.el8.x86_64.rpm624df8257257a56c6bc94abea7079892-ol8_x86_64_olcne17
olcne-utils-1.7.5-17.el8.x86_64.rpmce01387d1203e6402252fedd5e6428e3-ol8_x86_64_olcne17
olcnectl-1.7.5-17.el8.x86_64.rpmf37e680e24564521fc0c88f221629453-ol8_x86_64_olcne17
virtctl-0.58.0-4.el8.x86_64.rpme3830cd25046983d439c06984bd97926-ol8_x86_64_olcne17
yq-4.34.1-3.el8.x86_64.rpm59750c71513933ca259235efd61b5117-ol8_x86_64_olcne16
yq-4.34.1-3.el8.x86_64.rpm59750c71513933ca259235efd61b5117-ol8_x86_64_olcne17



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete