-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2020-61fcf3ffc7 2020-11-05 02:11:15.057751 --------------------------------------------------------------------------------
Name : kata-osbuilder Product : Fedora 31 Version : 1.11.1 Release : 1.fc31.1 URL : https://github.com/kata-containers/osbuilder Summary : Kata guest initrd and image build scripts Description : Kata guest initrd and image build scripts
-------------------------------------------------------------------------------- Update Information:
Security fix for CVE-2020-2026 -------------------------------------------------------------------------------- ChangeLog:
* Tue Jul 28 2020 Fedora Release Engineering releng@fedoraproject.org - 1.11.1-1.1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Fri Jun 26 2020 Pavel Mores pmores@redhat.com - 1.11.1-1 - Update to version 1.11.1 - Make fedora-kata-osbuilder.sh distro-agnostic - Rename fedora-kata-osbuilder.sh to kata-osbuilder.sh * Tue Jun 2 2020 Fabiano Fid��ncio fidencio@redhat.com - 1.11.0-2 - Add VFIO modules to the initrd * Fri May 8 2020 Cole Robinson crobinso@redhat.com - 1.11.0-1 - Update to version 1.11.0 * Mon Apr 20 2020 Cole Robinson aintdiscole@gmail.com - 1.11.0-0.3-rc0 - Update to kata-osbuilder 1.11.0-rc0 * Thu Apr 2 2020 Cole Robinson aintdiscole@gmail.com - 1.11.0-0.2.alpha - Disable FS image generation, the image is presently unused * Wed Mar 25 2020 Cole Robinson aintdiscole@gmail.com - 1.11.0-0.1.alpha - Remove kata-agent, it has moved to its own top level package * Mon Mar 23 2020 Fabiano Fid��ncio fidencio@redhat.com - 1.11.0-0.alpha1 - Update to release 1.11.0-alpha1 * Tue Mar 10 2020 Cole Robinson crobinso@redhat.com - 1.10.0-8 - Restore needed qemu-img dep * Fri Mar 6 2020 Cole Robinson aintdiscole@gmail.com - 1.10.0-7 - Allow passing non-uname kernel version to osbuilder script * Thu Mar 5 2020 Cole Robinson aintdiscole@gmail.com - 1.10.0-6 - Precompile nsdax binary to drop gcc runtime dep - Re-add 9p drivers for ease of debugging - Add %check section - Add drop in 15-dracut-fedora.conf rather than patch upstream files - Drop some custom patches - fedora-kata-osbuilder.sh rework and improvements * Mon Feb 17 2020 Cole Robinson aintdiscole@gmail.com - 1.10.0-5 - Add runtime busybox dep, for dracut debug modules * Sat Feb 15 2020 Cole Robinson aintdiscole@gmail.com - 1.10.0-4 - Fixes for virtio-fs - Add modules to aid debugging appliance initrd/image * Fri Feb 14 2020 Cole Robinson aintdiscole@gmail.com - 1.10.0-3 - Add kata-osbuilder-generate.service * Wed Jan 29 2020 Fedora Release Engineering releng@fedoraproject.org - 1.10.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Tue Jan 21 2020 Christophe de Dinechin dinechin@redhat.com - 1.10.0-1 - Update to release 1.10.0 * Fri Jan 17 2020 Christophe de Dinechin dinechin@redhat.com - 1.9.3-1 - Update to 1.9.3 (No change upstream) * Fri Jan 17 2020 Christophe de Dinechin dinechin@redhat.com - 1.9.2-1 - Update to 1.9.2 (No change upstream) * Fri Jan 17 2020 Fabiano Fid��ncio fidencio@redhat.com - 1.9.1-2 - Remove unneeded nsdax binary file - rhbz#1792216 - Install images in /var/cache instead of /usr/libexec - rhbz#1792216 * Fri Nov 29 2019 Christophe de Dinechin dinechin@redhat.com - 1.9.1-1 - Udpate to 1.9.1 * Tue Nov 19 2019 Christophe de Dinechin dinechin@redhat.com - 1.9.0-4 - Address remaining warnigns reported by rpmlint / rpmgrill, see bz1773629 * Tue Nov 19 2019 Christophe de Dinechin dinechin@redhat.com - 1.9.0-3 - Address various errors and warnings reported by rpmlint / rpmgrill: + Add rpmlintrc filter to address bogus spelling erorrs (initrd -> trinity) + Add rpmlintrc filter to remove golang macros warnings (no version number) + Rmove percent sign in changelog + Use SOURCE2 instead of _sourcedir to avoid rpmlint error + Add missing golang packages in the provides list (from golist) + Fix permission for fedora-kata-osbuilder.sh -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1848294 - CVE-2020-2026 kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution https://bugzilla.redhat.com/show_bug.cgi?id=1848294 --------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-61fcf3ffc7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------