Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2023-2204
History
May 15, 2023 - 12:00 a.m.
Vulners
/
Oraclelinux
/
Image Builder security, bug fix, and enhancement update
Image Builder security, bug fix, and enhancement update
2023-05-15
00:00:00
linux.oracle.com
20
security
bug fix
enhancement
cockpit-composer
osbuild
osbuild-composer
weldr-client
EPSS
0.003
Percentile
68.9%
JSON
cockpit-composer
[45-1.0.1]
Make per page documentation links point to Oracle Linux [Orabug: 32013095], [Orabug:34398922]
[45-1]
New upstream release
[44-1]
New upstream release
[43-1]
New upstream release
[42-1]
New upstream release
osbuild
[81-1]
New upstream release
[80-1]
New upstream release
[79-1]
New upstream release
[78-1]
New upstream release
[77-1]
New upstream release
[76-1]
New upstream release
[75-1]
New upstream release
[74-1]
New upstream release
[73-1]
New upstream release
[72-1]
New upstream release
[71-1]
New upstream release
[70-1]
New upstream release
[69-1]
New upstream release
osbuild-composer
[76-2]
distro/rhel: add payload repos to os package set (rhbz#2177699)
Manifest: always set kernel options in grub2 stage (rhbz#2162299)
[76-1]
New upstream release
[75-1]
New upstream release
[74-1]
New upstream release
[73-1]
New upstream release
[72-1]
New upstream release
[71-1]
New upstream release
[70-1]
New upstream release
[69-1]
New upstream release
[68-1]
New upstream release
[67-2]
Fix functional tests to make them pass in RHEL-9.2 gating
[67-1]
New upstream release
[62-1]
New upstream release
[60-1]
New upstream release
[59-1]
New upstream release
[58-1]
New upstream release
[57-1]
New upstream release
[55-1]
New upstream release
[54-1]
New upstream release
[53-1]
New upstream release
[51-1]
New upstream release
[46-1]
New upstream release
[45-1]
New upstream release
[44-1]
New upstream release
[43-1]
New upstream release
[42-1]
New upstream release
[41-1]
New upstream release
[40-1]
New upstream release
[39-1]
New upstream release
[38-1]
New upstream release
Tue Nov 02 2021 lavocatt - 37-1
New upstream release
[36-1]
New upstream release
[33-1]
New upstream release
[32-1]
New upstream release
[31-1]
New upstream release
[30-2]
Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
[30-1]
New upstream release
[29-3]
Rebuilt for RHEL 9 BETA for openssl 3.0
Related: rhbz#1971065
[29-2]
Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
weldr-client
[35.9-1]
Copy rhel-92.json test repository from osbuild-composer
Update osbuild-composer test repositories from osbuild-composer
New release: 35.9 (bcl)
Resolves: rhbz#2164560
tests: Replace os.MkdirTemp with t.TempDir (bcl)
blueprint save: Allow overriding bad blueprint names (bcl)
tests: Clean up checking err in tests (bcl)
composer-cli: Implement blueprints diff (bcl)
saveBlueprint: Return the filename to the caller (bcl)
composer-cli: Add tests for using --commit with old servers (bcl)
weldr: Return error about the blueprints change route (bcl)
weldr: Save the http status code as part of APIResponse (bcl)
Add --commit support to blueprints save (bcl)
Add --commit to blueprints show (bcl)
gitleaks: Exclude the test password used in tests (bcl)
ci: add tags to AWS instances (tlavocat)
Update
github.com/BurntSushi/toml
to 1.2.1
Update
github.com/stretchr/testify
to 1.8.1
Update bump
github.com/spf13/cobra
to 1.6.1
New release: 35.8 (bcl)
completion: Remove providers from bash completion script (bcl)
completion: Filter out new headers from compose list (bcl)
docs: Remove unneeded Long descriptions (bcl)
docs: Use a custom help template (bcl)
docs: Add more command documentation (bcl)
cmdline: Add package glob support to modules list command (bcl)
workflow: Add govulncheck on go v1.18 (bcl)
tests: Update to use golangci-lint 1.49.0 (bcl)
New release: 35.7 (bcl)
spec: Move %gometa macro above %gourl (bcl)
weldr: When starting a compose pass size as bytes, not MiB (bcl)
tests: Use correct size value in bytes for test (bcl)
workflow: Add Go 1.18 to text matrix (bcl)
Replace deprecated ioutil functions (bcl)
New release: 35.6 (bcl)
tests: Update tests for osbuild-composer changes (bcl)
CMD: Compose status format (eloy.coto)
CMD: Compose list format (eloy.coto)
tests: Update tests to check for JSON list output (bcl)
composer-cli: Change JSON output to be a list of objects (bcl)
weldr: Simplify the old ComposeLog, etc. functions (bcl)
composer-cli: Add --filename to blueprints freeze save command (bcl)
composer-cli: Add --filename to blueprints save command (bcl)
composer-cli: Add --filename to compose logs command (bcl)
composer-cli: Add --filename to compose image command (bcl)
composer-cli: Add --filename to compose metadata command (bcl)
composer-cli: Add --filename to compose results command (bcl)
weldr: Add saving to a new filename to GetFilePath function (bcl)
github: Fix issue with codecov and forced pushes in PRs (bcl)
Use golangci-lint 1.45.2 in workflow (bcl)
Run workflow tests for go 1.16.x and 1.17.x (bcl)
Move go.mod to go 1.16 (bcl)
workflows/trigger-gitlab: run Gitlab CI in new image-builder project (jrusz)
Update GitHub actions/setup-go to 3
Update GitHub actions/checkout to 3
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
9
src
cockpit-composer
< 45-1.0.1.el9_2
cockpit-composer-45-1.0.1.el9_2.src.rpm
oracle linux
9
src
osbuild
< 81-1.el9
osbuild-81-1.el9.src.rpm
oracle linux
9
src
osbuild-composer
< 76-2.el9_2
osbuild-composer-76-2.el9_2.src.rpm
oracle linux
9
src
weldr-client
< 35.9-1.el9
weldr-client-35.9-1.el9.src.rpm
oracle linux
9
noarch
cockpit-composer
< 45-1.0.1.el9_2
cockpit-composer-45-1.0.1.el9_2.noarch.rpm
oracle linux
9
noarch
osbuild
< 81-1.el9
osbuild-81-1.el9.noarch.rpm
oracle linux
9
aarch64
osbuild-composer
< 76-2.el9_2
osbuild-composer-76-2.el9_2.aarch64.rpm
oracle linux
9
aarch64
osbuild-composer-core
< 76-2.el9_2
osbuild-composer-core-76-2.el9_2.aarch64.rpm
oracle linux
9
aarch64
osbuild-composer-dnf-json
< 76-2.el9_2
osbuild-composer-dnf-json-76-2.el9_2.aarch64.rpm
oracle linux
9
aarch64
osbuild-composer-worker
< 76-2.el9_2
osbuild-composer-worker-76-2.el9_2.aarch64.rpm
Rows per page:
10
1-10 of 32
1
Related
nessus 76
oraclelinux 11
redhat 23
osv 21
almalinux 13
fedora 2
suse 2
altlinux 1
rocky 2
openvas 14
ibm 12
freebsd 1
photon 3
mageia 1
amazon 2
redhatcve 2
prion 1
veracode 2
nvd 1
alpinelinux 1
cbl_mariner 3
ubuntucve 1
cve 2
debiancve 2
nessus
nessus
76
RHEL 9 : Image Builder (RHSA-2023:2204)
2023-05-13 00:00:00
CentOS 8 : Image Builder (CESA-2023:2780)
2023-05-20 00:00:00
AlmaLinux 9 : Image Builder (ALSA-2023:2204)
2023-05-15 00:00:00
oraclelinux
oraclelinux
11
Image Builder security, bug fix, and enhancement update
2023-05-24 00:00:00
go-toolset:ol8 security and bug fix update
2023-01-26 00:00:00
go-toolset and golang security and bug fix update
2023-01-24 00:00:00
redhat
redhat
23
(RHSA-2023:2204) Moderate: Image Builder security, bug fix, and enhancement update
2023-05-09 05:03:19
(RHSA-2023:2780) Moderate: Image Builder security, bug fix, and enhancement update
2023-05-16 05:54:33
(RHSA-2023:0708) Moderate: Release of OpenShift Serverless Client kn 1.27.0
2023-02-09 09:22:38
osv
osv
21
Moderate: Image Builder security, bug fix, and enhancement update
2023-05-16 00:00:00
Moderate: Image Builder security, bug fix, and enhancement update
2023-05-09 00:00:00
Moderate: go-toolset:rhel8 security and bug fix update
2023-01-25 08:59:15
almalinux
almalinux
13
Moderate: Image Builder security, bug fix, and enhancement update
2023-05-09 00:00:00
Moderate: Image Builder security, bug fix, and enhancement update
2023-05-16 00:00:00
Moderate: go-toolset:rhel8 security and bug fix update
2023-01-25 00:00:00
fedora
fedora
[SECURITY] Fedora 37 Update: golang-1.19.2-1.fc37
2022-10-17 22:55:43
[SECURITY] Fedora 36 Update: golang-1.18.7-1.fc36
2022-10-14 13:01:37
suse
suse
Security update for go1.18 (important)
2022-10-20 00:00:00
Security update for go1.19 (important)
2022-10-20 00:00:00
altlinux
altlinux
Security fix for the ALT Linux 10 package golang version 1.18.7-alt1
2022-10-18 00:00:00
rocky
rocky
go-toolset:rhel8 security and bug fix update
2023-01-25 08:59:15
go-toolset and golang security and bug fix update
2023-01-23 14:30:17
openvas
openvas
14
SUSE: Security Advisory (SUSE-SU-2022:3668-1)
2022-10-20 00:00:00
SUSE: Security Advisory (SUSE-SU-2022:3669-1)
2022-10-20 00:00:00
Fedora: Security Advisory for golang (FEDORA-2022-59a20edab2)
2022-10-18 00:00:00
ibm
ibm
12
Security Bulletin: Platform Navigator and Automation Assets in IBM Cloud Pak for Integration is vulnerable to multiple Go vulnerabilities
2023-01-31 10:35:36
Security Bulletin: IBM Watson Discovery Cartridge for IBM Cloud Pak for Data affected by vulnerability in Golang Go
2023-02-24 13:11:31
Security Bulletin: IBM Storage Ceph is vulnerable to an HTTP request/response smuggling vulnerablity in Golang Go
2023-11-01 19:46:14
freebsd
freebsd
go -- multiple vulnerabilities
2022-10-04 00:00:00
photon
photon
Important Photon OS Security Update - PHSA-2022-0273
2022-11-02 00:00:00
Important Photon OS Security Update - PHSA-2022-4.0-0273
2022-11-02 00:00:00
Important Photon OS Security Update - PHSA-2022-3.0-0478
2022-10-27 00:00:00
mageia
mageia
Updated golang packages fix security vulnerability
2022-10-19 02:14:56
amazon
amazon
Important: golist
2023-01-18 00:17:00
Important: golang
2022-12-01 20:31:00
redhatcve
redhatcve
CVE-2022-41715
2022-10-07 05:26:46
CVE-2022-27664
2022-09-08 00:18:20
prion
prion
Memory corruption
2022-10-14 15:16:00
veracode
veracode
Denial Of Service (DoS)
2022-10-14 04:05:34
Denial Of Service (DoS)
2022-09-07 08:33:55
nvd
nvd
CVE-2022-41715
2022-10-14 15:16:20
alpinelinux
alpinelinux
CVE-2022-41715
2022-10-14 15:16:20
cbl_mariner
cbl_mariner
CVE-2022-41715 affecting package golang for versions less than 1.19.5-1
2024-02-25 03:00:06
CVE-2022-2880 affecting package golang for versions less than 1.19.10-1
2024-02-25 03:00:06
CVE-2022-27664 affecting package kured for versions less than 1.13.2-1
2023-11-15 20:12:47
ubuntucve
ubuntucve
CVE-2022-41715
2022-10-14 00:00:00
cve
cve
CVE-2022-41715
2022-10-14 15:16:20
CVE-2022-2880
2022-10-14 15:15:18
debiancve
debiancve
CVE-2022-2880
2022-10-14 15:15:18
CVE-2022-27664
2022-09-06 18:15:12
EPSS
0.003
Percentile
68.9%
JSON
Related for ELSA-2023-2204
nessus
76
oraclelinux
11
redhat
23
osv
21
almalinux
13
fedora
2
suse
2
altlinux
1
rocky
2
openvas
14
ibm
12
freebsd
1
photon
3
mageia
1
amazon
2
redhatcve
2
prion
1
veracode
2
nvd
1
alpinelinux
1
cbl_mariner
3
ubuntucve
1
cve
2
debiancve
2