{"cves":["CVE-2023-39325","CVE-2023-44487"],"cvss":0.0,"database_specific":{"severity":"IMPORTANT"},"description":"conmon\n[2.1.3-7]\n- Resolve CVE-2023-39325\n\n[2.1.3-6]\n- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile\n\n[2.1.3-5]\n- Add systemd-devel as build requirement\n\n[2.1.3-4]\n- Add support ARM build\n\n[2.1.3.3]\n- Add OL9 support\n\n[2.1.3.2]\n- Update inline with Linux team building conmon for all but OL7.\n\ncri-o\n[1.25.2-3]\n- Resolve CVE-2023-39325\n\ncri-tools\n[1.25.0-2]\n- Resolve CVE-2023-39325\n\netcd\n[3.5.9-2]\n- Bump up version\n\n[3.5.9-1]\n- Added Oracle specific build files\n\nflannel-cni-plugin\n[1.0.1-3]\n- Resolve CVE-2023-44487 and CVE-2023-39325\n\nhelm\n[3.11.1-2]\n- address CVE-2023-44487 and CVE-2023-39325\n\nistio\nkata\n[1.12.1-14]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-13]\n- Rebuild kata to fix timestamp issue\n\n[1.12.1-12]\n- Add support for ARM build\n\n[1.12.1-11]\n- Add OL9 support\n\n[1.12.1-10]\n- Updated kata-runtime version to work with more versions of kvm_utils\n\nkata-agent\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Remove build_date global variable in kata-image specfile\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Add OL9 support\n\nkata-image\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Remove build_date global variable in specfile\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Restore OL7 and bump release\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\n[1.12.1-4]\n- build for kata-agent-1.12.1-4\n\nkata-ksm-throttler\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Bump releaase inline with others for reversion of removal of OL7.\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\nkata-proxy\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Revert OL7 removal\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\nkata-runtime\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Add OL9 support\n\n[1.12.1-5]\n- Updated qemu-kvm machine options to work with more versions of kvm_utils\n\nkata-shim\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Bump releaase inline with others for reversion of removal of OL7.\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\nkubernetes\nkubernetes-cni\n[1.0.1-3]\n- Resolve CVE-2023-44487 and CVE-2023-39325\n\nkubernetes-cni-plugins\n[1.0.1-4]\n- Resolve CVE-2023-44487 and CVE-2023-39325\n\nolcne\n[1.6.5-9]\n- Mark container-registry as updatable\n\n[1.6.5-9]\n- update metallb 0.12.1 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-8]\n- Update externalip-webhook 1.0.0-3 to address CVE-2023-44487, CVE-2023-39325\n\n[1.6.5-7]\n- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-6]\n- Update rook-1.10.9 to address CVE-2023-44487, CVE-2023-39325\n\n[1.6.5-5]\n- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's\n- CVE-2023-44487\n- CVE-2023-39325\n\n[1.6.5-4]\n- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325\n\n[1.6.5-3]\n- update configmap-registry to 1.28.0 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-2]\n- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-1]\n- Update calico image versions to address golang CVE-2023-44487, CVE-2023-39325\n\nyq\n[4.34.1-3]\n- address CVE-2023-44487 and CVE-2023-3932A\n\n[4.34.1-2]\n- Add support for ARM build","id":"ELSA-2023-13028","ovalId":"oval:com.oracle.elsa:def:202313028","source":"oracle_linux","title":"ELSA-2023-13028: olcne security update (IMPORTANT)","url":"https://linux.oracle.com/errata/ELSA-2023-13028.html"}