[ELSA-2022-7950] Image Builder security, bug fix, and enhancement update
cockpit-composer
[41-1.0.1]
- Make per page documentation links point to Oracle Linux [Orabug: 32013095], [Orabug:34398922]
[41-1]
- New upstream release
[40-1]
- New upstream release
[39-1]
- New upstream release
[38-1]
- New upstream release
[37-1]
- New upstream release
[35-1]
- New upstream release
[34-1]
- New upstream release
[33-1]
- Add support for OCI upload target
- Update translations
- Update dependencies
[32-1]
- Add Edge Raw, RHEL Installer, Edge Simplified Installer image types
- Improve user account modal responsiveness
- Update tests
- Update minor NPM dependencies
- Update translation files
[31-1]
- Add new ostree image types
- Improve loading state when waiting for api responses
- Improve notification system
- Improve test stability
- Update NPM dependencies
- Update translations
[30-3]
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
[30-2]
- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
[30-1]
- Add and update translations
- Update NPM dependencies
- Improve test reliability
[28-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
[28-1]
- Use sentence case rather than title case
- Add and update tests
- Update translations from weblate
- Update minor NPM dependencies
[27-1]
- Improve test reliability
- Update translations from weblate
- Update minor NPM dependencies
[26-1]
- Add additional form validation for the Create Image Wizard
- Improve page size dropdown styling
- Update minor NPM dependencies
- Improve code styling
- Improve test reliability
osbuild
[65-1]
- New upstream release
[64-1]
- New upstream release
[63-1]
- New upstream release
[62-1]
- New upstream release
[61-1]
- New upstream release
[60-1]
- New upstream release
[59-1]
- New upstream release
[58-1]
- New upstream release
[57-1]
- New upstream release
[56-1]
- New upstream release
[55-1]
- New upstream release
[54-1]
- New upstream release
[53-1]
- New upstream release
[52-1]
- New upstream release
[50-1]
- New upstream release
[49-1]
- New upstream release
[48-1]
- New upstream release
[47-1]
- New upstream release
[46-1]
- New upstream release
[45-1]
- New upstream release
[44-1]
- New upstream release
[43-1]
- New upstream release
[42-1]
- New upstream release
[39-1]
- New upstream release
[35-1]
- Upstream release 35
[34-1]
- Upstream release 34
[33-1]
- Upstream release 33
[32-1]
- Upstream release 32
[31-1]
- Upstream release 31
[30-1]
- Upstream release 30
- Many new stages for building ostree-based raw images
- Bootiso.mono stage was deprecated and split into smaller stages
- Mounts are now represented as an array in a manifest
- Various bug fixes and improvements to various stages
[29-2]
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
[29-1]
- Upstream release 29
- Adds host services
- Adds modprobe and logind stage
[27-3]
- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
[27-2]
- Include Fedora 35 runner (upstream commit 337e0f0)
[27-1]
- Upstream release 27
- Various bug fixes related to the new container and installer
stages introdcued in version 25 and 26.
[26-1]
- Upstream release 26
- Support for building boot isos
- Grub stage gained support for saved_entry to fix grub tooling
[25-1]
- Upstream release 25
- First tech preview of the new manifest format. Includes
various new stages and inputs to be able to build ostree
commits contained in a oci archive.
[24-1]
- Upstream release 24
- Turn on dependency generator for everything but runners
- Include new input binaries
[23-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
[23-1]
- Upstream release 23
- Do not mangle shebangs for assemblers, runners & stages.
[22-1]
- Upstream release 22
[21-1]
- Upstream reelase 21
osbuild-composer
[62.1-1]
- New upstream release
[62-1]
- New upstream release
[60-1]
- New upstream release
[59-1]
- New upstream release
[58-1]
- New upstream release
[57-1]
- New upstream release
[55-1]
- New upstream release
[54-1]
- New upstream release
[53-1]
- New upstream release
[51-1]
- New upstream release
[46-1]
- New upstream release
[45-1]
- New upstream release
[44-1]
- New upstream release
[43-1]
- New upstream release
[42-1]
- New upstream release
[41-1]
- New upstream release
[40-1]
- New upstream release
[39-1]
- New upstream release
[38-1]
- New upstream release
- Tue Nov 02 2021 lavocatt - 37-1
- New upstream release
[36-1]
- New upstream release
[33-1]
- New upstream release
[32-1]
- New upstream release
[31-1]
- New upstream release
[30-2]
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
[30-1]
- New upstream release
[29-3]
- Rebuilt for RHEL 9 BETA for openssl 3.0
Related: rhbz#1971065
[29-2]
- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
[29-1]
- New upstream release
[28-1]
- New upstream release
[27-1]
- New upstream release
[26-3]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
[26-2]
- Fix the compatibility with a new golang-github-azure-storage-blob 0.12
[26-1]
- New upstream release
[25-1]
- New upstream release
[24-1]
- New upstream release
[23-1]
- New upstream release
[22-1]
- New upstream release
weldr-client
[35.5-4]
- tests: Add osbuild-composer repo file for RHEL 9.1
Related: rhbz#2118831
[35.5-3]
- tests: Update tests for osbuild composer changes
Resolves: rhbz#2118831
Package | Affected Version |
---|---|
pkg:rpm/oraclelinux/weldr-client?distro=oraclelinux-9 | < 35.5-4.el9 |
pkg:rpm/oraclelinux/python3-osbuild?distro=oraclelinux-9 | < 65-1.el9 |
pkg:rpm/oraclelinux/osbuild?distro=oraclelinux-9 | < 65-1.el9 |
pkg:rpm/oraclelinux/osbuild-selinux?distro=oraclelinux-9 | < 65-1.el9 |
pkg:rpm/oraclelinux/osbuild-ostree?distro=oraclelinux-9 | < 65-1.el9 |
pkg:rpm/oraclelinux/osbuild-lvm2?distro=oraclelinux-9 | < 65-1.el9 |
pkg:rpm/oraclelinux/osbuild-luks2?distro=oraclelinux-9 | < 65-1.el9 |
pkg:rpm/oraclelinux/osbuild-composer?distro=oraclelinux-9 | < 62.1-1.el9 |
pkg:rpm/oraclelinux/osbuild-composer-worker?distro=oraclelinux-9 | < 62.1-1.el9 |
pkg:rpm/oraclelinux/osbuild-composer-dnf-json?distro=oraclelinux-9 | < 62.1-1.el9 |
pkg:rpm/oraclelinux/osbuild-composer-core?distro=oraclelinux-9 | < 62.1-1.el9 |
pkg:rpm/oraclelinux/cockpit-composer?distro=oraclelinux-9 | < 41-1.0.1.el9 |
- ID
- ELSA-2022-7950
- Severity
- low
- URL
- https://linux.oracle.com/errata/ELSA-2022-7950.html
- Published
-
2022-11-22T00:00:00
(22 months ago) - Modified
-
2022-11-22T00:00:00
(22 months ago) - Rights
- Copyright 2022 Oracle, Inc.
- Other Advisories
-
- ALAS-2023-1731
- ALAS2-2022-1846
- ALPINE:CVE-2022-32189
- ALSA-2022:7129
- ALSA-2022:7548
- ALSA-2022:7950
- ALSA-2023:2193
- ALSA-2023:2236
- ALSA-2023:2357
- ALSA-2023:2758
- ALSA-2023:2802
- ELSA-2022-20693
- ELSA-2022-20694
- ELSA-2022-23681
- ELSA-2022-24267
- ELSA-2022-7129
- ELSA-2022-7548
- ELSA-2023-2357
- ELSA-2023-2758
- ELSA-2023-2802
- FEDORA-2022-1f829990f0
- FREEBSD:7F8D5435-125A-11ED-9A69-10C37B4AC2EA
- GLSA-202208-02
- GO-2022-0537
- MS:CVE-2022-32189
- RHSA-2022:7129
- RHSA-2022:7548
- RHSA-2022:7950
- RHSA-2023:0328
- RHSA-2023:0446
- RHSA-2023:2193
- RHSA-2023:2236
- RHSA-2023:2357
- RHSA-2023:2758
- RHSA-2023:2802
- RLSA-2022:7129
- RLSA-2022:7548
- RLSA-2022:7950
- SUSE-SU-2022:2671-1
- SUSE-SU-2022:2672-1
- SUSE-SU-2023:2312-1
- USN-6038-1
- USN-6038-2
Source | # ID | Name | URL |
---|---|---|---|
elsa | ELSA-2022-7950 | https://linux.oracle.com/errata/ELSA-2022-7950.html | |
CVE | CVE-2022-32189 | https://linux.oracle.com/cve/CVE-2022-32189.html |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/oraclelinux/weldr-client?distro=oraclelinux-9 | oraclelinux | weldr-client | < 35.5-4.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/python3-osbuild?distro=oraclelinux-9 | oraclelinux | python3-osbuild | < 65-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild?distro=oraclelinux-9 | oraclelinux | osbuild | < 65-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-selinux?distro=oraclelinux-9 | oraclelinux | osbuild-selinux | < 65-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-ostree?distro=oraclelinux-9 | oraclelinux | osbuild-ostree | < 65-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-lvm2?distro=oraclelinux-9 | oraclelinux | osbuild-lvm2 | < 65-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-luks2?distro=oraclelinux-9 | oraclelinux | osbuild-luks2 | < 65-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-composer?distro=oraclelinux-9 | oraclelinux | osbuild-composer | < 62.1-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-composer-worker?distro=oraclelinux-9 | oraclelinux | osbuild-composer-worker | < 62.1-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-composer-dnf-json?distro=oraclelinux-9 | oraclelinux | osbuild-composer-dnf-json | < 62.1-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/osbuild-composer-core?distro=oraclelinux-9 | oraclelinux | osbuild-composer-core | < 62.1-1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/cockpit-composer?distro=oraclelinux-9 | oraclelinux | cockpit-composer | < 41-1.0.1.el9 | oraclelinux-9 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |