ELSA-2024-12328

ELSA-2024-12328 - cri-o security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2024-04-16

Description


cri-o
[1.25.5-2]
- Address CVE-2024-24786

cri-tools
[1.25.0-4]
- Address CVE-2024-24786

etcd
[3.5.9-4]
- Address protobuf [CVE-2024-24786]

[3.5.9-3]
- Address CVE-2023-39326 by upgrading golang to version 1.20.12

istio
[1.16.7-4]
- Address protobuf [CVE-2024-24786]
- Backport from 1.19.7 to address CVE-2024-23322, CVE-2024-23323, CVE-2024-23324, CVE-2024-23325, CVE-2024-23327

kubernetes
[1.25.16-2]
- Fixed CoreDNS version check

[1.25.16-1]
- Added Oracle specific build files for Kubernetes

olcne
[1.6.7-3]
- Fixed unable to deploy new module(s) using config file containing already existing modules
- Update Istio-1.16.7 to address CVE-2024-24786, CVE-2024-23322, CVE-2024-23323, CVE-2024-23324, CVE-2024-23325, CVE-2024-23327


Related CVEs


CVE-2024-24786
CVE-2024-23327

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (x86_64) cri-o-1.25.5-2.el8.src.rpmf23987e62c695eb5e4b8fc0004b5b376-ol8_x86_64_olcne16
cri-tools-1.25.0-4.el8.src.rpm806f802668d44128704a436fae8c984c-ol8_x86_64_olcne16
etcd-3.5.9-4.el8.src.rpm5c0fb34e69efa5899b6d3a6019be8cc5-ol8_x86_64_olcne16
istio-1.16.7-4.el8.src.rpm4ce5dcc25f87a7d5266b9e4bfd11b877-ol8_x86_64_olcne16
kubernetes-1.25.16-2.el8.src.rpm6be412aaa7cc2841201ace7ac3a33ff5-ol8_x86_64_olcne16
olcne-1.6.7-3.el8.src.rpmd46828c3006b850ff87540b4d9c96761-ol8_x86_64_olcne16
cri-o-1.25.5-2.el8.x86_64.rpmf8df13e346dfba93eb274f158d4594ee-ol8_x86_64_olcne16
cri-tools-1.25.0-4.el8.x86_64.rpm54125d40453194e7bd1a48c1a96524a8-ol8_x86_64_olcne16
etcd-3.5.9-4.el8.x86_64.rpmb746e6bf2aeb01ca44bdf92f9e7b2cc5-ol8_x86_64_olcne16
istio-1.16.7-4.el8.x86_64.rpm572623e9eb8581a2882a44cd653be21c-ol8_x86_64_olcne16
istio-istioctl-1.16.7-4.el8.x86_64.rpm66bf00627b514b64f0305b7ed5e521b5-ol8_x86_64_olcne16
kubeadm-1.25.16-2.el8.x86_64.rpm497f1182f7855f5820ff81aec3529163-ol8_x86_64_olcne16
kubectl-1.25.16-2.el8.x86_64.rpm84e817077878c34f8a1ffe0da294001e-ol8_x86_64_olcne16
kubelet-1.25.16-2.el8.x86_64.rpm0dadcff1911c7ed5fc20d7b5a3438eeb-ol8_x86_64_olcne16
olcne-agent-1.6.7-3.el8.x86_64.rpmc27feb4c8728f52c1347ea7d6a333e69-ol8_x86_64_olcne16
olcne-api-server-1.6.7-3.el8.x86_64.rpm18831d244aab1964325603e03cef3515-ol8_x86_64_olcne16
olcne-calico-chart-1.6.7-3.el8.x86_64.rpm38942a306b5217ae14d44e9515a99c28-ol8_x86_64_olcne16
olcne-gluster-chart-1.6.7-3.el8.x86_64.rpm966286dcb1faa06f3c48f6c3e52c6d74-ol8_x86_64_olcne16
olcne-grafana-chart-1.6.7-3.el8.x86_64.rpm6459028c2a44c7c69601a712378513cd-ol8_x86_64_olcne16
olcne-istio-chart-1.6.7-3.el8.x86_64.rpm95b1bc408679fced828876f3a0628fb0-ol8_x86_64_olcne16
olcne-metallb-chart-1.6.7-3.el8.x86_64.rpm96bf9f6262742dd5edfdc4421bc41d40-ol8_x86_64_olcne16
olcne-multus-chart-1.6.7-3.el8.x86_64.rpm7eb517cd6bbe7319d058a6433ee26a6a-ol8_x86_64_olcne16
olcne-nginx-1.6.7-3.el8.x86_64.rpm9baec54fbf74989ea651b8a258e1b4c6-ol8_x86_64_olcne16
olcne-oci-ccm-chart-1.6.7-3.el8.x86_64.rpme91c1deaaed447dd8bcd70d4c19700d9-ol8_x86_64_olcne16
olcne-olm-chart-1.6.7-3.el8.x86_64.rpm5230e329024865a24c87186ed7c3a80b-ol8_x86_64_olcne16
olcne-prometheus-chart-1.6.7-3.el8.x86_64.rpmd85068ff0b149275f53dd6123e49c9bf-ol8_x86_64_olcne16
olcne-utils-1.6.7-3.el8.x86_64.rpmb0a549f8ae91ea6fb14b795a5caf48ec-ol8_x86_64_olcne16
olcnectl-1.6.7-3.el8.x86_64.rpm7609a4e9867b98ce92a3c9e92846ebe0-ol8_x86_64_olcne16



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete