[ELSA-2023-2283] skopeo security and bug fix update
[2:1.11.2-0.1]
- update to the latest content of https://github.com/containers/skopeo/tree/release-1.11
(https://github.com/containers/skopeo/commit/3f98753)
- Related: #2124478
[2:1.11.1-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.11.1
- Related: #2124478
[2:1.11.0-1]
- update to 1.11.0 release
- Related: #2124478
[2:1.11.0-0.4]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/b3b2c73)
- Related: #2124478
[2:1.11.0-0.3]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/fe15a36)
- Related: #2124478
[2:1.11.0-0.2]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/8e09e64)
- Related: #2124478
[2:1.11.0-0.1]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/2817510)
- Related: #2124478
[2:1.10.0-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.10.0
- Related: #2124478
[2:1.9.3-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.9.3
- Related: #2124478
[2:1.9.2-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.9.2
- Related: #2061316
[2:1.9.1-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.9.1
- Related: #2061316
[2:1.9.0-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.9.0
- Related: #2061316
[2:1.8.0-4]
- Re-enable debuginfo
- Related: #2061316
[2:1.8.0-3]
- BuildRequires: /usr/bin/go-md2man
- Related: #2061316
[2:1.8.0-2]
- enable LTO
- Related: #1988128
[2:1.8.0-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.8.0
- Related: #2061316
[2:1.7.0-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.7.0
- Related: #2061316
[2:1.6.1-4]
- add tags: classic (Ed Santiago)
- Related: #2061316
[2:1.6.1-3]
- remove BATS from required packages (Ed Santiago)
- Related: #2061316
[2:1.6.1-2]
- be sure to install BATS before gating tests are executed
(thanks to Ed Santiago)
- Related: #2061316
[2:1.6.1-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.6.1
- Related: #2000051
[2:1.6.0-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.6.0
- Related: #2000051
[2:1.5.2-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.5.2
- Related: #2000051
[2:1.5.1-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.5.1
- Related: #2000051
[2:1.5.1-0.9]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/4acc9f0)
- Related: #2000051
[2:1.5.1-0.8]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/c2732cb)
- Related: #2000051
[2:1.5.1-0.7]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/01e58f8)
- Related: #2000051
[2:1.5.1-0.6]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/8f64c04)
- Related: #2000051
[2:1.5.1-0.5]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/8182255)
- Related: #2000051
[2:1.5.1-0.4]
- bump Epoch to preserve upgrade patch from RHEL8
- Related: #2000051
[1:1.5.1-0.3]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/9c9a9f3)
- Related: #2000051
[1:1.5.1-0.2]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/116e75f)
- Related: #2000051
[1:1.5.1-0.1]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/fc81803)
- Related: #2000051
[1:1.4.1-0.14]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/ff88d3f)
- Related: #2000051
[1:1.4.1-0.13]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/a95b0cc)
- Related: #2000051
[1:1.4.1-0.12]
- add skopeo tests from Fedora
- Related: #2000051
[1:1.4.1-0.11]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/53cf287)
- Related: #2000051
[1:1.4.1-0.10]
- add gating.yaml
- Related: #2000051
[1:1.4.1-0.9]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/86fa758)
- Related: #2000051
[1:1.4.1-0.8]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/2c2e5b7)
- Related: #2000051
[1:1.4.1-0.7]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/25d3e7b)
- Related: #2000051
[1:1.4.1-0.6]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/c5a5199)
- Related: #2000051
[1:1.4.1-0.5]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/db1e814)
- Related: #2000051
[1:1.4.1-0.4]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/31b8981)
- Related: #2000051
[1:1.4.1-0.3]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/177443f)
- Related: #2000051
[1:1.4.1-0.2]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/30f208e)
- Related: #2000051
[1:1.4.1-0.1]
- update to the latest content of https://github.com/containers/skopeo/tree/main
(https://github.com/containers/skopeo/commit/47b8082)
- Related: #2000051
[1:1.4.1-1]
- rebuild with containers-common dep fixed
- Related: #2000051
[1:1.4.0-7]
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
[1:1.4.0-6]
- be sure short-name-mode is permissive in RHEL8
- Related: #1970747
[1:1.4.0-5]
- don't define short-name-mode in RHEL8
- Related: #1970747
[1:1.4.0-4]
- put both RHEL8 and RHEL9 conditional configurations into update.sh
- Related: #1970747
[1:1.4.0-3]
- update vendored components
- always require runc on RHEL8 or lesser
- Related: #1970747
[1:1.4.0-2]
- update to the latest content of https://github.com/containers/skopeo/tree/release-1.4
(https://github.com/containers/skopeo/commit/a44da44)
- Related: #1970747
[1:1.4.0-1]
- update to 1.4.0 release and switch to the release-1.4 maint branch
- Related: #1970747
[1:1.4.0-0.2]
- update vendored components
- ship /etc/pki/rpm-gpg/RPM-GPG-KEY-redhat-release only on non-RHEL and
CentOS distros
- Related: #1970747
[1:1.4.0-0.1]
- switch to the main branch of skopeo
- Related: #1970747
[1:1.3.1-9]
- Add support for signed RHEL images, enabled by default
- Related: #1970747
[1:1.3.1-8]
- update seccomp.json from Fedora to allow clone3 to pass
- Related: #1970747
[1:1.3.1-7]
- update shortnames from Pyxis
- put RHEL9/UBI9 images into overrides
- Related: #1970747
[1:1.3.1-6]
- correct name of the option is 'short-name-mode' not 'short-names-mode'
- Related: #1970747
[1:1.3.1-5]
- handle CentOS Stream while updating vendored components
- Related: #1970747
[1:1.3.1-4]
- update to the latest content of https://github.com/containers/skopeo/tree/release-1.3
(https://github.com/containers/skopeo/commit/038f70e)
- Related: #1970747
[1:1.3.1-3]
- update registries.conf to be consistent with upstream
- Related: #1970747
[1:1.3.1-2]
- consume content from the release-1.3 upstream branch
- Related: #1970747
[1:1.3.1-1]
- update to https://github.com/containers/skopeo/releases/tag/v1.3.1
- Related: #1970747
[1:1.3.0-7]
- Rebuilt for RHEL 9 BETA for openssl 3.0
Related: rhbz#1971065
[1:1.3.0-6]
- set short-names-mode = 'enforcing' in registries.conf
- Resolves: #1971752
[1:1.3.0-5]
- configure for RHEL9
- Related: #1970747
[1:1.3.0-4]
- add missing containers-mounts.conf.5.md file to git
- don't list/install the same doc twice
- Related: #1970747
[1:1.3.0-3]
- update to new versions of vendored components
- fail is there is an issue in communication with Pyxis API
- understand devel branch in update.sh script, use pkg wrapper
- sync with Pyxis
- use containers-mounts.conf.5.md from containers/common
- Related: #1970747
[1:1.2.2-4]
- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
[1:1.2.2-3]
- disable LTO again
[1:1.2.2-2]
- use rhel-shortnames only from trusted registries
- sync with config files from current versions of vendored projects
Package | Affected Version |
---|---|
pkg:rpm/oraclelinux/skopeo?distro=oraclelinux-9 | < 1.11.2-0.1.el9 |
pkg:rpm/oraclelinux/skopeo-tests?distro=oraclelinux-9 | < 1.11.2-0.1.el9 |
- ID
- ELSA-2023-2283
- Severity
- moderate
- URL
- https://linux.oracle.com/errata/ELSA-2023-2283.html
- Published
-
2023-05-15T00:00:00
(16 months ago) - Modified
-
2023-05-15T00:00:00
(16 months ago) - Rights
- Copyright 2023 Oracle, Inc.
- Other Advisories
-
- ALAS-2022-1635
- ALAS-2023-1731
- ALAS-2023-1848
- ALAS2-2022-1846
- ALAS2-2022-1847
- ALAS2-2022-1858
- ALAS2-2022-1859
- ALAS2-2022-1860
- ALAS2-2022-1861
- ALAS2-2022-1862
- ALAS2-2022-1863
- ALAS2-2022-1864
- ALAS2-2022-1865
- ALAS2-2023-1926
- ALPINE:CVE-2022-30629
- ALPINE:CVE-2022-41717
- ALSA-2023:2204
- ALSA-2023:2222
- ALSA-2023:2236
- ALSA-2023:2253
- ALSA-2023:2282
- ALSA-2023:2283
- ALSA-2023:2357
- ALSA-2023:2367
- ALSA-2023:2758
- ALSA-2023:2780
- ALSA-2023:2802
- ALSA-2023:2866
- ALSA-2023:6420
- ELSA-2022-17956
- ELSA-2023-18908
- ELSA-2023-2204
- ELSA-2023-2222
- ELSA-2023-2253
- ELSA-2023-2282
- ELSA-2023-2357
- ELSA-2023-2367
- ELSA-2023-2758
- ELSA-2023-2780
- ELSA-2023-2802
- ELSA-2023-2866
- ELSA-2023-6420
- FEDORA-2022-13ad572b5a
- FEDORA-2022-30c5ed5625
- FEDORA-2022-3969b64d4b
- FEDORA-2022-3e1ade35db
- FEDORA-2022-4a48180f3f
- FEDORA-2022-4b5537c44c
- FEDORA-2022-5038c3236c
- FEDORA-2022-53e0f427dd
- FEDORA-2022-5ef0bd9a27
- FEDORA-2022-6716cd0da2
- FEDORA-2022-739c7a0058
- FEDORA-2022-741325e9a0
- FEDORA-2022-8bf5635efc
- FEDORA-2022-9986fbb3d7
- FEDORA-2022-9a9a638d09
- FEDORA-2022-b0bd0219ff
- FEDORA-2022-ba365d3703
- FEDORA-2022-e674d52438
- FEDORA-2022-ea8f4e232d
- FEDORA-2022-fae3ecee19
- FEDORA-2023-0c354a3f9a
- FEDORA-2023-0fa7715821
- FEDORA-2023-0fff8bc164
- FEDORA-2023-2663dc67d8
- FEDORA-2023-267503a090
- FEDORA-2023-2df9d60e4c
- FEDORA-2023-322314ad50
- FEDORA-2023-327346caa5
- FEDORA-2023-3baf3f43a0
- FEDORA-2023-3dba09f630
- FEDORA-2023-4e2068ba5d
- FEDORA-2023-5eca6a8326
- FEDORA-2023-62ce942e75
- FEDORA-2023-6550d9323b
- FEDORA-2023-6cfe7492c1
- FEDORA-2023-6d71ff268e
- FEDORA-2023-70eb8ba61e
- FEDORA-2023-74e5545901
- FEDORA-2023-8b700042ac
- FEDORA-2023-8c02aee138
- FEDORA-2023-8ecc0e487e
- FEDORA-2023-946dfaf17f
- FEDORA-2023-a5a5542890
- FEDORA-2023-aa7c75ed4a
- FEDORA-2023-abb47e24d8
- FEDORA-2023-ac4651c9b2
- FEDORA-2023-af2e3d1c18
- FEDORA-2023-c0149844e2
- FEDORA-2023-c9b2182a4e
- FEDORA-2023-ca444fdecf
- FEDORA-2023-cb3a59a3df
- FEDORA-2023-ce2836acfa
- FEDORA-2023-e16469fdec
- FEDORA-2023-e359fd31d2
- FEDORA-2023-e82fd2abcb
- FEDORA-2023-e8c27ba884
- FEDORA-2023-ee472c698c
- FEDORA-2023-f4bd7ab2f7
- FEDORA-2024-80e062d21a
- FEDORA-2024-9cc0e0c63e
- FEDORA-2024-ae653fb07b
- FEDORA-2024-b85b97c0e9
- FEDORA-2024-d652859efb
- FEDORA-2024-fb32950d11
- FEDORA-2024-fd3545a844
- FREEBSD:15888C7E-E659-11EC-B7FE-10C37B4AC2EA
- FREEBSD:6F5192F5-75A7-11ED-83C0-411D43CE7FE4
- GLSA-202208-02
- GLSA-202311-09
- GO-2022-0531
- GO-2022-1144
- MS:CVE-2022-30629
- MS:CVE-2022-41717
- RHSA-2022:5775
- RHSA-2022:5799
- RHSA-2023:0328
- RHSA-2023:0446
- RHSA-2023:2204
- RHSA-2023:2222
- RHSA-2023:2236
- RHSA-2023:2253
- RHSA-2023:2282
- RHSA-2023:2283
- RHSA-2023:2357
- RHSA-2023:2367
- RHSA-2023:2758
- RHSA-2023:2780
- RHSA-2023:2802
- RHSA-2023:2866
- RHSA-2023:6420
- SUSE-SU-2022:2004-1
- SUSE-SU-2022:2005-1
- SUSE-SU-2022:4397-1
- SUSE-SU-2022:4398-1
- SUSE-SU-2023:2312-1
- USN-6038-1
- USN-6038-2
Source | # ID | Name | URL |
---|---|---|---|
elsa | ELSA-2023-2283 | https://linux.oracle.com/errata/ELSA-2023-2283.html | |
CVE | CVE-2022-30629 | https://linux.oracle.com/cve/CVE-2022-30629.html | |
CVE | CVE-2022-41717 | https://linux.oracle.com/cve/CVE-2022-41717.html |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/oraclelinux/skopeo?distro=oraclelinux-9 | oraclelinux | skopeo | < 1.11.2-0.1.el9 | oraclelinux-9 | ||
Affected | pkg:rpm/oraclelinux/skopeo-tests?distro=oraclelinux-9 | oraclelinux | skopeo-tests | < 1.11.2-0.1.el9 | oraclelinux-9 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |