[ELSA-2023-13053] conmon security update

Severity Important
Affected Packages 38
CVEs 2

conmon
[2.1.3-7]
- Resolve CVE-2023-39325

[2.1.3-6]
- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile

[2.1.3-5]
- Add systemd-devel as build requirement

[2.1.3-4]
- Add support ARM build

cri-o
[1.26.3-3]
- Resolve CVE-2023-39325

[1.26.3-2]
- Add support for ARM build

cri-tools
[1.26.1-3]
- Resolve CVE-2023-39325

[1.26.1-2]
- Add ARM build support

etcd
[3.5.9-2]
- Bump up version

[3.5.9-1]
- Added Oracle specific build files

flannel-cni-plugin
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add ARM build support

helm
[3.12.0-3]
- address CVE-2023-44487 and CVE-2023-39325

[-]
- Add support for ARM build

istio
[1.17.8-1]
- Added Oracle specific files for 1.17.8-1

kata
[1.12.1-14]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-13]
- Rebuild kata to fix timestamp issue

[1.12.1-12]
- Add support for ARM build

kata-agent
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in kata-image specfile

[1.12.1-7]
- Add support for ARM build

kata-image
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Remove build_date global variable in specfile

[1.12.1-7]
- Add support for ARM build

kata-ksm-throttler
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-proxy
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-runtime
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kata-shim
[1.12.1-9]
- Updated to address CVE-2023-44487 and CVE-2023-39325

[1.12.1-8]
- Bump release inline with other kata packages for fixing timestamp issue

[1.12.1-7]
- Add support for ARM build

kubernetes
[1.26.10-2]
- Allow dashes DNS image

[1.26.10-1]
- Added Oracle specific build files for Kubernetes

kubernetes-cni
[1.1.2-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.1.2-2]
- Add support for ARM build

kubernetes-cni-plugins
[1.2.0-4]
- Fix go.mod

[1.2.0-3]
- Resolve CVE-2023-44487 and CVE-2023-39325

[1.2.0-2]
- Add support for ARM build

[1.2.0-1]
- Added Oracle specific build files for Kubernetes CNI Plugins

kubevirt
[0.58.0-4]
- Updated to address CVE-2023-44487 and CVE-2023-39325

olcne
[1.7.5-17]
- Fix update issue from 1.6.x -> 1.7.5

[1.7.5-16]
- Pass imagetag to the metallb tool that converts configmap to crs

[1.7.5-15]
- Fix metallb upgrade failure when proxy is needed

[1.7.5-14]
- Update conmon to 2.1.3-7 in scripts

[1.7.5-13]
- Update module-operator to address CVE-2023-44487, CVE-2023-39325

[1.7.5-12]
- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-11]
- Update multus-cni 4.0.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-10]
- Update metallb 0.13.9 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-9]
- Update externalip-webhook 1.0.0 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-8]
- Update calico-3.25.0 and 3.25.1 to address CVE-2023-44487, CVE-2023-39325

[1.7.5-7]
- Update rook-1.10.9 and 1.11.6 to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-6]
- update configmap-registry to 1.28.0 and update olm 0.23.1 to address CVE-2023-44487 and CVE-2023-39325

[1.7.5-5]
- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's
- CVE-2023-44487
- CVE-2023-39325

[1.7.5-4]
- update helm 3.12.0 to Address CVE-2023-44487 and CVE-2023-39325

[1.7.5-3]
- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325

[1.7.5-2]
- Add olm 0.23.1 charts

[1.7.5-1]
- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325

yq
[4.34.1-3]
- address CVE-2023-44487 and CVE-2023-3932A

[4.34.1-2]
- Add support for ARM build

Package Affected Version
pkg:rpm/oraclelinux/yq?distro=oraclelinux-9 < 4.34.1-3.el9
pkg:rpm/oraclelinux/virtctl?distro=oraclelinux-9 < 0.58.0-4.el9
pkg:rpm/oraclelinux/olcnectl?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-utils?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-rook-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-prometheus-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-olm-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-oci-ccm-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-nginx?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-multus-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-metallb-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-kubevirt-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-istio-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-grafana-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-gluster-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-calico-chart?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-api-server?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/olcne-agent?distro=oraclelinux-9 < 1.7.5-17.el9
pkg:rpm/oraclelinux/kubernetes-cni?distro=oraclelinux-9 < 1.1.2-3.el9
pkg:rpm/oraclelinux/kubernetes-cni-plugins?distro=oraclelinux-9 < 1.2.0-4.el9
pkg:rpm/oraclelinux/kubelet?distro=oraclelinux-9 < 1.26.10-2.el9
pkg:rpm/oraclelinux/kubectl?distro=oraclelinux-9 < 1.26.10-2.el9
pkg:rpm/oraclelinux/kubeadm?distro=oraclelinux-9 < 1.26.10-2.el9
pkg:rpm/oraclelinux/kata?distro=oraclelinux-9 < 1.12.1-14.el9
pkg:rpm/oraclelinux/kata-shim?distro=oraclelinux-9 < 1.12.1-9.el9
pkg:rpm/oraclelinux/kata-runtime?distro=oraclelinux-9 < 1.12.1-9.el9
pkg:rpm/oraclelinux/kata-proxy?distro=oraclelinux-9 < 1.12.1-9.el9
pkg:rpm/oraclelinux/kata-ksm-throttler?distro=oraclelinux-9 < 1.12.1-9.el9
pkg:rpm/oraclelinux/kata-image < 1.12.1-9.9.ol9_202311161804
pkg:rpm/oraclelinux/kata-agent?distro=oraclelinux-9 < 1.12.1-9.el9
pkg:rpm/oraclelinux/istio?distro=oraclelinux-9 < 1.17.8-1.el9
pkg:rpm/oraclelinux/istio-istioctl?distro=oraclelinux-9 < 1.17.8-1.el9
pkg:rpm/oraclelinux/helm?distro=oraclelinux-9 < 3.12.0-3.el9
pkg:rpm/oraclelinux/flannel-cni-plugin?distro=oraclelinux-9 < 1.1.2-3.el9
pkg:rpm/oraclelinux/etcd?distro=oraclelinux-9 < 3.5.9-2.el9
pkg:rpm/oraclelinux/cri-tools?distro=oraclelinux-9 < 1.26.1-3.el9
pkg:rpm/oraclelinux/cri-o?distro=oraclelinux-9 < 1.26.3-3.el9
pkg:rpm/oraclelinux/conmon?distro=oraclelinux-9 < 2.1.3-7.el9
ID
ELSA-2023-13053
Severity
important
URL
https://linux.oracle.com/errata/ELSA-2023-13053.html
Published
2023-12-19T00:00:00
(9 months ago)
Modified
2023-12-19T00:00:00
(9 months ago)
Rights
Copyright 2023 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/yq?distro=oraclelinux-9 oraclelinux yq < 4.34.1-3.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/virtctl?distro=oraclelinux-9 oraclelinux virtctl < 0.58.0-4.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcnectl?distro=oraclelinux-9 oraclelinux olcnectl < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-utils?distro=oraclelinux-9 oraclelinux olcne-utils < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-rook-chart?distro=oraclelinux-9 oraclelinux olcne-rook-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-prometheus-chart?distro=oraclelinux-9 oraclelinux olcne-prometheus-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-olm-chart?distro=oraclelinux-9 oraclelinux olcne-olm-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-oci-ccm-chart?distro=oraclelinux-9 oraclelinux olcne-oci-ccm-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-nginx?distro=oraclelinux-9 oraclelinux olcne-nginx < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-multus-chart?distro=oraclelinux-9 oraclelinux olcne-multus-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-metallb-chart?distro=oraclelinux-9 oraclelinux olcne-metallb-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-kubevirt-chart?distro=oraclelinux-9 oraclelinux olcne-kubevirt-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-istio-chart?distro=oraclelinux-9 oraclelinux olcne-istio-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-grafana-chart?distro=oraclelinux-9 oraclelinux olcne-grafana-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-gluster-chart?distro=oraclelinux-9 oraclelinux olcne-gluster-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-calico-chart?distro=oraclelinux-9 oraclelinux olcne-calico-chart < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-api-server?distro=oraclelinux-9 oraclelinux olcne-api-server < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/olcne-agent?distro=oraclelinux-9 oraclelinux olcne-agent < 1.7.5-17.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kubernetes-cni?distro=oraclelinux-9 oraclelinux kubernetes-cni < 1.1.2-3.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kubernetes-cni-plugins?distro=oraclelinux-9 oraclelinux kubernetes-cni-plugins < 1.2.0-4.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kubelet?distro=oraclelinux-9 oraclelinux kubelet < 1.26.10-2.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kubectl?distro=oraclelinux-9 oraclelinux kubectl < 1.26.10-2.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kubeadm?distro=oraclelinux-9 oraclelinux kubeadm < 1.26.10-2.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kata?distro=oraclelinux-9 oraclelinux kata < 1.12.1-14.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kata-shim?distro=oraclelinux-9 oraclelinux kata-shim < 1.12.1-9.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kata-runtime?distro=oraclelinux-9 oraclelinux kata-runtime < 1.12.1-9.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kata-proxy?distro=oraclelinux-9 oraclelinux kata-proxy < 1.12.1-9.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kata-ksm-throttler?distro=oraclelinux-9 oraclelinux kata-ksm-throttler < 1.12.1-9.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/kata-image oraclelinux kata-image < 1.12.1-9.9.ol9_202311161804
Affected pkg:rpm/oraclelinux/kata-agent?distro=oraclelinux-9 oraclelinux kata-agent < 1.12.1-9.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/istio?distro=oraclelinux-9 oraclelinux istio < 1.17.8-1.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/istio-istioctl?distro=oraclelinux-9 oraclelinux istio-istioctl < 1.17.8-1.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/helm?distro=oraclelinux-9 oraclelinux helm < 3.12.0-3.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/flannel-cni-plugin?distro=oraclelinux-9 oraclelinux flannel-cni-plugin < 1.1.2-3.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/etcd?distro=oraclelinux-9 oraclelinux etcd < 3.5.9-2.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/cri-tools?distro=oraclelinux-9 oraclelinux cri-tools < 1.26.1-3.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/cri-o?distro=oraclelinux-9 oraclelinux cri-o < 1.26.3-3.el9 oraclelinux-9
Affected pkg:rpm/oraclelinux/conmon?distro=oraclelinux-9 oraclelinux conmon < 2.1.3-7.el9 oraclelinux-9
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...