Lucene search

K
oraclelinuxOracleLinuxELSA-2024-12263
HistoryApr 02, 2024 - 12:00 a.m.

olcne security update

2024-04-0200:00:00
linux.oracle.com
7
olcne update
spec file cleanup
upgrade failure fix
hostpath privilege
cve-2023-39326
golang update

5.3 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

5.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.6%

[1.8.1-2]

  • Cleanup spec file
    [1.8.1-1]
  • Fix OLM upgrade failure - upgrade from 0.17.0 to 0.23.1 failed due to a couple of crds missing
  • Add hostpathRequiresPrivilged value to rook template cr to be passed to module operator
  • Fixed Istio-1.18 and Istio-1.19 installation on aarch64 architecture
  • Fixed unable to deploy new module(s) using config file containing already existing modules
  • Corrected olcne repo version in the prompt text of the ‘olcnectl provision’ command
  • Update modules and components built with golang 1.20.12 to address CVE-2023-39326
  • add conmon resource to kubernetes module
  • Fix OLM upgrade failure - same version upgrade failure
  • Migrate ModuleOperator from verrazzano-install to ocne-modules namespace
  • Fix multiple install during provision

5.3 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

5.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.6%