elsa-2023-13028
oracle_linuxconmon [2.1.3-7] - Resolve CVE-2023-39325 [2.1.3-6] - Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile [2.1.3-5] - Add systemd-devel as build requirement [2.1.3-4] - Add support ARM build [2.1.3.3] - Add OL9 support [2.1.3.2] - Update inline with Linux team building conmon for all but OL7. cri-o [1.25.2-3] - Resolve CVE-2023-39325 cri-tools [1.25.0-2] - Resolve CVE-2023-39325 etcd [3.5.9-2] - Bump up version [3.5.9-1] - Added Oracle specific build files flannel-cni-plugin [1.0.1-3] - Resolve CVE-2023-44487 and CVE-2023-39325 helm [3.11.1-2] - address CVE-2023-44487 and CVE-2023-39325 istio kata [1.12.1-14] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-13] - Rebuild kata to fix timestamp issue [1.12.1-12] - Add support for ARM build [1.12.1-11] - Add OL9 support [1.12.1-10] - Updated kata-runtime version to work with more versions of kvm_utils kata-agent [1.12.1-9] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-8] - Remove build_date global variable in kata-image specfile [1.12.1-7] - Add support for ARM build [1.12.1-6] - Add OL9 support kata-image [1.12.1-9] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-8] - Remove build_date global variable in specfile [1.12.1-7] - Add support for ARM build [1.12.1-6] - Restore OL7 and bump release [1.12.1-5] - Add support for Oracle Linux 9 [1.12.1-4] - build for kata-agent-1.12.1-4 kata-ksm-throttler [1.12.1-9] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-8] - Bump release inline with other kata packages for fixing timestamp issue [1.12.1-7] - Add support for ARM build [1.12.1-6] - Bump releaase inline with others for reversion of removal of OL7. [1.12.1-5] - Add support for Oracle Linux 9 kata-proxy [1.12.1-9] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-8] - Bump release inline with other kata packages for fixing timestamp issue [1.12.1-7] - Add support for ARM build [1.12.1-6] - Revert OL7 removal [1.12.1-5] - Add support for Oracle Linux 9 kata-runtime [1.12.1-9] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-8] - Bump release inline with other kata packages for fixing timestamp issue [1.12.1-7] - Add support for ARM build [1.12.1-6] - Add OL9 support [1.12.1-5] - Updated qemu-kvm machine options to work with more versions of kvm_utils kata-shim [1.12.1-9] - Updated to address CVE-2023-44487 and CVE-2023-39325 [1.12.1-8] - Bump release inline with other kata packages for fixing timestamp issue [1.12.1-7] - Add support for ARM build [1.12.1-6] - Bump releaase inline with others for reversion of removal of OL7. [1.12.1-5] - Add support for Oracle Linux 9 kubernetes kubernetes-cni [1.0.1-3] - Resolve CVE-2023-44487 and CVE-2023-39325 kubernetes-cni-plugins [1.0.1-4] - Resolve CVE-2023-44487 and CVE-2023-39325 olcne [1.6.5-9] - Mark container-registry as updatable [1.6.5-9] - update metallb 0.12.1 to address CVE-2023-44487 and CVE-2023-39325 [1.6.5-8] - Update externalip-webhook 1.0.0-3 to address CVE-2023-44487, CVE-2023-39325 [1.6.5-7] - Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325 [1.6.5-6] - Update rook-1.10.9 to address CVE-2023-44487, CVE-2023-39325 [1.6.5-5] - Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's - CVE-2023-44487 - CVE-2023-39325 [1.6.5-4] - Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325 [1.6.5-3] - update configmap-registry to 1.28.0 to address CVE-2023-44487 and CVE-2023-39325 [1.6.5-2] - Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325 [1.6.5-1] - Update calico image versions to address golang CVE-2023-44487, CVE-2023-39325 yq [4.34.1-3] - address CVE-2023-44487 and CVE-2023-3932A [4.34.1-2] - Add support for ARM build
- Published
- unknown
- Last Modified
- unknown
CVSS details not available.
No product information available.
No references available.
No linked vulnerabilities found.
{
"cves": [
"CVE-2023-39325",
"CVE-2023-44487"
],
"cvss": 0.0,
"database_specific": {
"severity": "IMPORTANT"
},
"description": "conmon\n[2.1.3-7]\n- Resolve CVE-2023-39325\n\n[2.1.3-6]\n- Add ol8_baseos_latest, and ol9_baseos_latest, to Jenkinsfile\n\n[2.1.3-5]\n- Add systemd-devel as build requirement\n\n[2.1.3-4]\n- Add support ARM build\n\n[2.1.3.3]\n- Add OL9 support\n\n[2.1.3.2]\n- Update inline with Linux team building conmon for all but OL7.\n\ncri-o\n[1.25.2-3]\n- Resolve CVE-2023-39325\n\ncri-tools\n[1.25.0-2]\n- Resolve CVE-2023-39325\n\netcd\n[3.5.9-2]\n- Bump up version\n\n[3.5.9-1]\n- Added Oracle specific build files\n\nflannel-cni-plugin\n[1.0.1-3]\n- Resolve CVE-2023-44487 and CVE-2023-39325\n\nhelm\n[3.11.1-2]\n- address CVE-2023-44487 and CVE-2023-39325\n\nistio\nkata\n[1.12.1-14]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-13]\n- Rebuild kata to fix timestamp issue\n\n[1.12.1-12]\n- Add support for ARM build\n\n[1.12.1-11]\n- Add OL9 support\n\n[1.12.1-10]\n- Updated kata-runtime version to work with more versions of kvm_utils\n\nkata-agent\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Remove build_date global variable in kata-image specfile\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Add OL9 support\n\nkata-image\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Remove build_date global variable in specfile\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Restore OL7 and bump release\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\n[1.12.1-4]\n- build for kata-agent-1.12.1-4\n\nkata-ksm-throttler\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Bump releaase inline with others for reversion of removal of OL7.\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\nkata-proxy\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Revert OL7 removal\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\nkata-runtime\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Add OL9 support\n\n[1.12.1-5]\n- Updated qemu-kvm machine options to work with more versions of kvm_utils\n\nkata-shim\n[1.12.1-9]\n- Updated to address CVE-2023-44487 and CVE-2023-39325\n\n[1.12.1-8]\n- Bump release inline with other kata packages for fixing timestamp issue\n\n[1.12.1-7]\n- Add support for ARM build\n\n[1.12.1-6]\n- Bump releaase inline with others for reversion of removal of OL7.\n\n[1.12.1-5]\n- Add support for Oracle Linux 9\n\nkubernetes\nkubernetes-cni\n[1.0.1-3]\n- Resolve CVE-2023-44487 and CVE-2023-39325\n\nkubernetes-cni-plugins\n[1.0.1-4]\n- Resolve CVE-2023-44487 and CVE-2023-39325\n\nolcne\n[1.6.5-9]\n- Mark container-registry as updatable\n\n[1.6.5-9]\n- update metallb 0.12.1 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-8]\n- Update externalip-webhook 1.0.0-3 to address CVE-2023-44487, CVE-2023-39325\n\n[1.6.5-7]\n- Update multus-cni 3.9.3 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-6]\n- Update rook-1.10.9 to address CVE-2023-44487, CVE-2023-39325\n\n[1.6.5-5]\n- Update Istio, Grafana, Prometheus, and Kubernetes-dashboard to address CVE's\n- CVE-2023-44487\n- CVE-2023-39325\n\n[1.6.5-4]\n- Update kubernetes and components to address golang CVE-2023-44487, CVE-2023-39325\n\n[1.6.5-3]\n- update configmap-registry to 1.28.0 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-2]\n- Update kubevirt 0.58.0 to address CVE-2023-44487 and CVE-2023-39325\n\n[1.6.5-1]\n- Update calico image versions to address golang CVE-2023-44487, CVE-2023-39325\n\nyq\n[4.34.1-3]\n- address CVE-2023-44487 and CVE-2023-3932A\n\n[4.34.1-2]\n- Add support for ARM build",
"id": "ELSA-2023-13028",
"ovalId": "oval:com.oracle.elsa:def:202313028",
"source": "oracle_linux",
"title": "ELSA-2023-13028: olcne security update (IMPORTANT)",
"url": "https://linux.oracle.com/errata/ELSA-2023-13028.html"
}