[ELSA-2024-12190] conmon security update

Severity Important
Affected Packages 34
CVEs 1

conmon
[2.1.3-8]
- address CVE-2023-39326

cri-o
[1.25.5-1]
- Added Oracle Specifile Files for cri-o

cri-tools
[1.25.0-3]
- Resolve CVE-2023-39326

flannel-cni-plugin
[1.0.1-4]
- Resolve CVE-2023-39326

helm
[3.11.1-3]
- address CVE-2023-39326

istio
[1.16.7-3]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kata
[1.12.1-17]
- Include OL9 for kernel-uek-container (currently in UEKR7_developer_preview)

kata-agent
[1.12.1-11]
- Rebuild with -11 tag

[1.12.1-10]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kata-image
[1.12.1-11]
- Rebuild with -11 tag

[1.12.1-10]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kata-ksm-throttler
[1.12.1-11]
- Rebuild with -11 tag

[1.12.1-10]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kata-proxy
[1.12.1-11]
- Rebuild with -11 tag

[1.12.1-10]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kata-runtime
[1.12.1-11]
- Rebuild with -11 tag

[1.12.1-10]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kata-shim
[1.12.1-11]
- Rebuild with -11 tag

[1.12.1-10]
- Updated Golang to 1.20.12 to address CVE CVE-2023-39326

kubernetes
[1.25.15-2]
- Address CVE-2023-39326 by upgrading golang to 1.20.12

kubernetes-cni
[1.0.1-4]
- address CVE-2023-39326

kubernetes-cni-plugins
[1.0.1-5]
- address CVE-2023-39326

olcne
[1.6.6-3]
- Fixed pod-network:calico update

yq
[4.34.1-4]
- Update Golang to 1.20.12 to address CVE-2023-39326

Package Affected Version
pkg:rpm/oraclelinux/yq?distro=oraclelinux-8 < 4.34.1-4.el8
pkg:rpm/oraclelinux/olcnectl?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-utils?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-prometheus-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-olm-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-oci-ccm-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-nginx?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-multus-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-metallb-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-istio-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-grafana-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-gluster-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-calico-chart?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-api-server?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/olcne-agent?distro=oraclelinux-8 < 1.6.6-3.el8
pkg:rpm/oraclelinux/kubernetes-cni?distro=oraclelinux-8 < 1.0.1-4.el8
pkg:rpm/oraclelinux/kubernetes-cni-plugins?distro=oraclelinux-8 < 1.0.1-5.el8
pkg:rpm/oraclelinux/kubelet?distro=oraclelinux-8 < 1.25.15-2.el8
pkg:rpm/oraclelinux/kubectl?distro=oraclelinux-8 < 1.25.15-2.el8
pkg:rpm/oraclelinux/kubeadm?distro=oraclelinux-8 < 1.25.15-2.el8
pkg:rpm/oraclelinux/kata?distro=oraclelinux-8 < 1.12.1-17.el8
pkg:rpm/oraclelinux/kata-shim?distro=oraclelinux-8 < 1.12.1-11.el8
pkg:rpm/oraclelinux/kata-runtime?distro=oraclelinux-8 < 1.12.1-11.el8
pkg:rpm/oraclelinux/kata-proxy?distro=oraclelinux-8 < 1.12.1-11.el8
pkg:rpm/oraclelinux/kata-ksm-throttler?distro=oraclelinux-8 < 1.12.1-11.el8
pkg:rpm/oraclelinux/kata-image < 1.12.1-11.11.ol8_202312212317
pkg:rpm/oraclelinux/kata-agent?distro=oraclelinux-8 < 1.12.1-11.el8
pkg:rpm/oraclelinux/istio?distro=oraclelinux-8 < 1.16.7-3.el8
pkg:rpm/oraclelinux/istio-istioctl?distro=oraclelinux-8 < 1.16.7-3.el8
pkg:rpm/oraclelinux/helm?distro=oraclelinux-8 < 3.11.1-3.el8
pkg:rpm/oraclelinux/flannel-cni-plugin?distro=oraclelinux-8 < 1.0.1-4.el8
pkg:rpm/oraclelinux/cri-tools?distro=oraclelinux-8 < 1.25.0-3.el8
pkg:rpm/oraclelinux/cri-o?distro=oraclelinux-8 < 1.25.5-1.el8
pkg:rpm/oraclelinux/conmon?distro=oraclelinux-8 < 2.1.3-8.el8
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/yq?distro=oraclelinux-8 oraclelinux yq < 4.34.1-4.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcnectl?distro=oraclelinux-8 oraclelinux olcnectl < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-utils?distro=oraclelinux-8 oraclelinux olcne-utils < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-prometheus-chart?distro=oraclelinux-8 oraclelinux olcne-prometheus-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-olm-chart?distro=oraclelinux-8 oraclelinux olcne-olm-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-oci-ccm-chart?distro=oraclelinux-8 oraclelinux olcne-oci-ccm-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-nginx?distro=oraclelinux-8 oraclelinux olcne-nginx < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-multus-chart?distro=oraclelinux-8 oraclelinux olcne-multus-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-metallb-chart?distro=oraclelinux-8 oraclelinux olcne-metallb-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-istio-chart?distro=oraclelinux-8 oraclelinux olcne-istio-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-grafana-chart?distro=oraclelinux-8 oraclelinux olcne-grafana-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-gluster-chart?distro=oraclelinux-8 oraclelinux olcne-gluster-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-calico-chart?distro=oraclelinux-8 oraclelinux olcne-calico-chart < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-api-server?distro=oraclelinux-8 oraclelinux olcne-api-server < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/olcne-agent?distro=oraclelinux-8 oraclelinux olcne-agent < 1.6.6-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kubernetes-cni?distro=oraclelinux-8 oraclelinux kubernetes-cni < 1.0.1-4.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kubernetes-cni-plugins?distro=oraclelinux-8 oraclelinux kubernetes-cni-plugins < 1.0.1-5.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kubelet?distro=oraclelinux-8 oraclelinux kubelet < 1.25.15-2.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kubectl?distro=oraclelinux-8 oraclelinux kubectl < 1.25.15-2.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kubeadm?distro=oraclelinux-8 oraclelinux kubeadm < 1.25.15-2.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kata?distro=oraclelinux-8 oraclelinux kata < 1.12.1-17.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kata-shim?distro=oraclelinux-8 oraclelinux kata-shim < 1.12.1-11.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kata-runtime?distro=oraclelinux-8 oraclelinux kata-runtime < 1.12.1-11.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kata-proxy?distro=oraclelinux-8 oraclelinux kata-proxy < 1.12.1-11.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kata-ksm-throttler?distro=oraclelinux-8 oraclelinux kata-ksm-throttler < 1.12.1-11.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/kata-image oraclelinux kata-image < 1.12.1-11.11.ol8_202312212317
Affected pkg:rpm/oraclelinux/kata-agent?distro=oraclelinux-8 oraclelinux kata-agent < 1.12.1-11.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/istio?distro=oraclelinux-8 oraclelinux istio < 1.16.7-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/istio-istioctl?distro=oraclelinux-8 oraclelinux istio-istioctl < 1.16.7-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/helm?distro=oraclelinux-8 oraclelinux helm < 3.11.1-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/flannel-cni-plugin?distro=oraclelinux-8 oraclelinux flannel-cni-plugin < 1.0.1-4.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/cri-tools?distro=oraclelinux-8 oraclelinux cri-tools < 1.25.0-3.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/cri-o?distro=oraclelinux-8 oraclelinux cri-o < 1.25.5-1.el8 oraclelinux-8
Affected pkg:rpm/oraclelinux/conmon?distro=oraclelinux-8 oraclelinux conmon < 2.1.3-8.el8 oraclelinux-8
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...