[El-errata] ELSA-2020-5828 Important: Oracle Linux Cloud Native Environment 1.0 security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Aug 31 15:39:43 PDT 2020


Oracle Linux Cloud Native Environment Security Advisory ELSA-2020-5828

http://linux.oracle.com/errata/ELSA-2020-5828.html

The following updated rpms for Oracle Linux Cloud Native Environment 1.0 
have been uploaded to the Unbreakable Linux Network:

x86_64:
coredns-1.3.1-1.0.6.el7.x86_64.rpm
cri-o-1.14.7-1.0.8.el7.x86_64.rpm
conmon-1.14.7-1.0.8.el7.x86_64.rpm
cri-tools-1.14.0-1.0.6.el7.x86_64.rpm
etcd-3.3.10-1.0.5.el7.x86_64.rpm
flannel-0.10.0-2.1.12.el7.x86_64.rpm
kata-1.7.3-1.0.9.el7.x86_64.rpm
kata-agent-1.7.3-1.0.6.el7.x86_64.rpm
kata-image-1.7.3-1.0.6.1.ol7_202008171204.x86_64.rpm
kata-ksm-throttler-1.7.3-1.0.5.el7.x86_64.rpm
kata-proxy-1.7.3-1.0.5.el7.x86_64.rpm
kata-runtime-1.7.3-1.0.6.el7.x86_64.rpm
kata-shim-1.7.3-1.0.5.el7.x86_64.rpm
kubeadm-1.14.9-1.0.9.el7.x86_64.rpm
kubectl-1.14.9-1.0.9.el7.x86_64.rpm
kubelet-1.14.9-1.0.9.el7.x86_64.rpm
kubernetes-cni-0.7.1-1.0.3.el7.x86_64.rpm
kubernetes-cni-plugins-0.8.6-1.0.3.el7.x86_64.rpm
kubernetes-dashboard-1.10.1-1.1.8.el7.x86_64.rpm
olcnectl-1.0.7-2.el7.x86_64.rpm
olcne-api-server-1.0.7-2.el7.x86_64.rpm
olcne-agent-1.0.7-2.el7.x86_64.rpm
olcne-utils-1.0.7-2.el7.x86_64.rpm
olcne-nginx-1.0.7-2.el7.x86_64.rpm
yq-2.4.0-1.0.5.el7.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/coredns-1.3.1-1.0.6.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/cri-o-1.14.7-1.0.8.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/cri-tools-1.14.0-1.0.6.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/etcd-3.3.10-1.0.5.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/flannel-0.10.0-2.1.12.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-1.7.3-1.0.9.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-agent-1.7.3-1.0.6.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-image-1.7.3-1.0.6.1.ol7_202008171204.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-ksm-throttler-1.7.3-1.0.5.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-proxy-1.7.3-1.0.5.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-runtime-1.7.3-1.0.6.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kata-shim-1.7.3-1.0.5.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kubernetes-1.14.9-1.0.9.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kubernetes-cni-0.7.1-1.0.3.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kubernetes-cni-plugins-0.8.6-1.0.3.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/kubernetes-dashboard-1.10.1-1.1.8.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/olcne-1.0.7-2.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/yq-2.4.0-1.0.5.el7.src.rpm

container_images:
container-registry.oracle.com/olcne/flannel:v0.10.0-2
container-registry.oracle.com/olcne/kube-proxy:v1.14.9-3
container-registry.oracle.com/olcne/kube-apiserver:v1.14.9-3
container-registry.oracle.com/olcne/kube-scheduler:v1.14.9-3
container-registry.oracle.com/olcne/kube-controller-manager:v1.14.9-3
container-registry.oracle.com/olcne/kubernetes-dashboard:v1.10.1-2
container-registry.oracle.com/olcne/etcd:3.3.10-2
container-registry.oracle.com/olcne/coredns:1.3.1-1



Description of changes:

coredns
[1.3.1-1.0.6]
- Address CVE-2020-16845

[1.3.1-1.0.5]
- Fix image location

cri-o
[1.14.7-1.0.8]
- Address CVE-2020-16845

cri-tools
[1.14.0-1.0.6]
- Address CVE-2020-16845

etcd
[3.3.10-1.0.5]
- Address CVE-2020-16845

[3.3.10-1.0.4]
- Fix image location

flannel
[0.10.0-2.1.12]
- Address CVE-2020-16845

[0.10.0-2.1.11]
- Resize flannel image

[0.10.0-2.1.10]
- Fix image location

kata
[1.7.3-1.0.9]
- Address CVE-2020-16845

kata-agent
[1.7.3-1.0.6]
- Address CVE-2020-16845

kata-image
[1.7.3-1.0.6.1]
- Address CVE-2020-16845

kata-ksm-throttler
[1.7.3-1.0.5]
- Address CVE-2020-16845

kata-proxy
[1.7.3-1.0.5]
- Address CVE-2020-16845

kata-runtime
[1.7.3-1.0.6]
- Address CVE-2020-16845

kata-shim
[1.7.3-1.0.5]
- Address CVE-2020-16845

kubernetes
[1.14.9-1.0.9]
- Pin components min version

[1.14.9-1.0.8]
- Address CVE-2020-16845

kubernetes-cni
[0.7.1-1.0.3]
- Pin min version of cni-plugins

[0.7.1-1.0.2]
- Address CVE-2020-16845

kubernetes-cni-plugins
[0.8.6-1.0.3]
- Address CVE-2020-16845

kubernetes-dashboard
[1.10.1-1.1.8]
- Address CVE-2020-16845

[1.8.3-2.0.1]
- Update to v1.8.3

olcne
[1.0.7-2]
- kubernetes pod subnet flag not honored in flannel configuration

[1.0.7-1]
- Address CVE-2020-16845

yq
[2.4.0-1.0.5]
- Address CVE-2020-16845


container-registry.oracle.com/olcne/flannel:v0.10.0-2
- Address CVE-2020-16845

container-registry.oracle.com/olcne/kube-proxy:v1.14.9-3
- Address CVE-2020-16845

container-registry.oracle.com/olcne/kube-apiserver:v1.14.9-3
- Address CVE-2020-16845

container-registry.oracle.com/olcne/kube-scheduler:v1.14.9-3
- Address CVE-2020-16845

container-registry.oracle.com/olcne/kube-controller-manager:v1.14.9-3
- Address CVE-2020-16845

container-registry.oracle.com/olcne/kubernetes-dashboard:v1.10.1-2
- Address CVE-2020-16845

container-registry.oracle.com/olcne/etcd:3.3.10-2
- Address CVE-2020-16845

container-registry.oracle.com/olcne/coredns:1.3.1-1
- Address CVE-2020-16845




More information about the El-errata mailing list