Skip to content

Commit cfcdd29

Browse files
docs: VHD release notes for 202308.16.0 (Azure#3544)
1 parent 38db64d commit cfcdd29

File tree

168 files changed

+146169
-2220
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

168 files changed

+146169
-2220
lines changed

vhdbuilder/release-notes/AKSCBLMariner/gen1/202308.16.0-image-list.json

Lines changed: 808 additions & 0 deletions
Large diffs are not rendered by default.

vhdbuilder/release-notes/AKSCBLMariner/gen1/202308.16.0-trivy-images-table.txt

Lines changed: 1628 additions & 0 deletions
Large diffs are not rendered by default.

vhdbuilder/release-notes/AKSCBLMariner/gen1/202308.16.0-trivy-report.json

Lines changed: 2407 additions & 0 deletions
Large diffs are not rendered by default.

vhdbuilder/release-notes/AKSCBLMariner/gen1/202308.16.0.txt

Lines changed: 467 additions & 0 deletions
Large diffs are not rendered by default.

vhdbuilder/release-notes/AKSCBLMariner/gen1/latest-image-list.json

Lines changed: 28 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
{
22
"sku": "V1",
3-
"imageVersion": "202308.10.0",
3+
"imageVersion": "202308.16.0",
44
"imageBom": [
55
{
66
"id": "sha256:059484fa426da9daa08645d2746974cfe3379e3bbb0723a47d17195fac09e1ce",
@@ -74,15 +74,6 @@
7474
"sha256:0627489ae5258a22f60004cd6d38adb57237628ade195420c52d9c4342373416"
7575
]
7676
},
77-
{
78-
"id": "sha256:2344f81e67ed16789b737ecd9370450bae26c30ff14f5581a377db486682b0de",
79-
"repoTags": [
80-
"mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.24.3"
81-
],
82-
"repoDigests": [
83-
"sha256:440ebccd0ec6305aa16dfdf1344b47873e3ad7f4536c4ccfa2f11661ddcb5aa8"
84-
]
85-
},
8677
{
8778
"id": "sha256:2b4b1c4b345674fabb11873753893dd1df0c51af972d52ba1f9a2e901482bf33",
8879
"repoTags": [
@@ -137,6 +128,15 @@
137128
"sha256:781a52c707944c8b062321ee60f737857e68165087beda5eeb17a45cd115963b"
138129
]
139130
},
131+
{
132+
"id": "sha256:3ec3f0197a486936a5a6a0c2319c1fb5d284557144399f685131b5043833f4ea",
133+
"repoTags": [
134+
"mcr.microsoft.com/oss/open-policy-agent/gatekeeper:v3.13.0"
135+
],
136+
"repoDigests": [
137+
"sha256:af83c896c3071b0ae4a2c201721ef32d64fe42cddf2e3bd05dfaa2fea9ad15f3"
138+
]
139+
},
140140
{
141141
"id": "sha256:415688a2a94d2164260d59d3d1973313e1daf7c245998a5742c0f117255403c3",
142142
"repoTags": [
@@ -191,6 +191,15 @@
191191
"sha256:6fee210e78756207a3a32c105847c4a27fd02bcb3a458f99716484735a1b9831"
192192
]
193193
},
194+
{
195+
"id": "sha256:650c9bc1594cc2118ec7911f2b3d1df9710917432fae40b4f8b74aa63587d091",
196+
"repoTags": [
197+
"mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.24.5"
198+
],
199+
"repoDigests": [
200+
"sha256:d7b6fc05b82969de106eafea8ebab5d78d9470867a695685c16c408135a426c6"
201+
]
202+
},
194203
{
195204
"id": "sha256:65b2c7659eb2cfe8026f95e96ffd4a9baae79e45e8e39dcaa618bced2c09f8b6",
196205
"repoTags": [
@@ -371,6 +380,15 @@
371380
"sha256:5735db598627ca42f47d060f59c21f3f72d17f0342da0097414b8b5dbdb6f492"
372381
]
373382
},
383+
{
384+
"id": "sha256:8989efdd57edb4b573ff73fa95a8a3808418532e5875fd64435b94634fd55a20",
385+
"repoTags": [
386+
"mcr.microsoft.com/azuremonitor/containerinsights/ciprod/prometheus-collector/images:6.7.4-main-08-11-2023-6de2ec55"
387+
],
388+
"repoDigests": [
389+
"sha256:47a8284195c883f3eef6b555661f95c1ce7c4286fb83eb4eea1f5f86e5c9b047"
390+
]
391+
},
374392
{
375393
"id": "sha256:8b867be8be312c220a132b3448309f5e22f0eaa8b8a8af5d526563542f7da69b",
376394
"repoTags": [

vhdbuilder/release-notes/AKSCBLMariner/gen1/latest-trivy-images-table.txt

Lines changed: 63 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -158,6 +158,62 @@ mcr.microsoft.com/azuremonitor/containerinsights/ciprod/prometheus-collector/ima
158158
Total: 0 (HIGH: 0, CRITICAL: 0)
159159

160160

161+
opt/microsoft/otelcollector/otelcollector (gobinary)
162+
====================================================
163+
Total: 2 (HIGH: 2, CRITICAL: 0)
164+
165+
┌────────────────────────────────┬────────────────┬──────────┬──────────────────────┬──────────────────┬──────────────────────────────────────────────────┐
166+
│ Library │ Vulnerability │ Severity │ Installed Version │ Fixed Version │ Title │
167+
├────────────────────────────────┼────────────────┼──────────┼──────────────────────┼──────────────────┼──────────────────────────────────────────────────┤
168+
│ github.com/docker/distribution │ CVE-2023-2253 │ HIGH │ v2.8.1+incompatible │ 2.8.2-beta.1 │ DoS from malicious API request │
169+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-2253 │
170+
├────────────────────────────────┼────────────────┤ ├──────────────────────┼──────────────────┼──────────────────────────────────────────────────┤
171+
│ github.com/docker/docker │ CVE-2023-28840 │ │ v23.0.1+incompatible │ 23.0.3, 20.10.24 │ Encrypted overlay network may be unauthenticated │
172+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-28840 │
173+
└────────────────────────────────┴────────────────┴──────────┴──────────────────────┴──────────────────┴──────────────────────────────────────────────────┘
174+
175+
opt/promconfigvalidator (gobinary)
176+
==================================
177+
Total: 2 (HIGH: 2, CRITICAL: 0)
178+
179+
┌────────────────────────────────┬────────────────┬──────────┬──────────────────────┬──────────────────┬──────────────────────────────────────────────────┐
180+
│ Library │ Vulnerability │ Severity │ Installed Version │ Fixed Version │ Title │
181+
├────────────────────────────────┼────────────────┼──────────┼──────────────────────┼──────────────────┼──────────────────────────────────────────────────┤
182+
│ github.com/docker/distribution │ CVE-2023-2253 │ HIGH │ v2.8.1+incompatible │ 2.8.2-beta.1 │ DoS from malicious API request │
183+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-2253 │
184+
├────────────────────────────────┼────────────────┤ ├──────────────────────┼──────────────────┼──────────────────────────────────────────────────┤
185+
│ github.com/docker/docker │ CVE-2023-28840 │ │ v23.0.1+incompatible │ 23.0.3, 20.10.24 │ Encrypted overlay network may be unauthenticated │
186+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-28840 │
187+
└────────────────────────────────┴────────────────┴──────────┴──────────────────────┴──────────────────┴──────────────────────────────────────────────────┘
188+
189+
usr/bin/telegraf (gobinary)
190+
===========================
191+
Total: 5 (HIGH: 5, CRITICAL: 0)
192+
193+
┌────────────────────────────────────┬────────────────┬──────────┬────────────────────────┬──────────────────┬────────────────────────────────────────────────────────────┐
194+
│ Library │ Vulnerability │ Severity │ Installed Version │ Fixed Version │ Title │
195+
├────────────────────────────────────┼────────────────┼──────────┼────────────────────────┼──────────────────┼────────────────────────────────────────────────────────────┤
196+
│ github.com/docker/distribution │ CVE-2023-2253 │ HIGH │ v2.8.1+incompatible │ 2.8.2-beta.1 │ DoS from malicious API request │
197+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-2253 │
198+
├────────────────────────────────────┼────────────────┤ ├────────────────────────┼──────────────────┼────────────────────────────────────────────────────────────┤
199+
│ github.com/docker/docker │ CVE-2023-28840 │ │ v20.10.17+incompatible │ 23.0.3, 20.10.24 │ Encrypted overlay network may be unauthenticated │
200+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-28840 │
201+
├────────────────────────────────────┼────────────────┤ ├────────────────────────┼──────────────────┼────────────────────────────────────────────────────────────┤
202+
│ github.com/opencontainers/runc │ CVE-2023-27561 │ │ v1.1.3 │ 1.1.5 │ volume mount race condition (regression of CVE-2019-19921) │
203+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-27561 │
204+
├────────────────────────────────────┼────────────────┤ ├────────────────────────┼──────────────────┼────────────────────────────────────────────────────────────┤
205+
│ github.com/snowflakedb/gosnowflake │ CVE-2023-34231 │ │ v1.6.13 │ 1.6.19 │ Snowflake Golang Driver vulnerable to Command Injection │
206+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-34231 │
207+
├────────────────────────────────────┼────────────────┤ ├────────────────────────┼──────────────────┼────────────────────────────────────────────────────────────┤
208+
│ golang.org/x/net │ CVE-2022-41723 │ │ v0.5.0 │ 0.7.0 │ avoid quadratic complexity in HPACK decoding │
209+
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2022-41723 │
210+
└────────────────────────────────────┴────────────────┴──────────┴────────────────────────┴──────────────────┴────────────────────────────────────────────────────────────┘
211+
212+
mcr.microsoft.com/azuremonitor/containerinsights/ciprod/prometheus-collector/images:6.7.4-main-08-11-2023-6de2ec55 (cbl-mariner 2.0.20230805)
213+
=============================================================================================================================================
214+
Total: 0 (HIGH: 0, CRITICAL: 0)
215+
216+
161217
opt/microsoft/otelcollector/otelcollector (gobinary)
162218
====================================================
163219
Total: 2 (HIGH: 2, CRITICAL: 0)
@@ -477,12 +533,12 @@ mcr.microsoft.com/oss/kubernetes-csi/azuredisk-csi:v1.28.2 (alpine 3.15.1)
477533
Total: 0 (HIGH: 0, CRITICAL: 0)
478534

479535

480-
mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.24.3 (alpine 3.15.1)
536+
mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.24.4 (alpine 3.15.1)
481537
==========================================================================
482538
Total: 0 (HIGH: 0, CRITICAL: 0)
483539

484540

485-
mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.24.4 (alpine 3.15.1)
541+
mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.24.5 (alpine 3.15.1)
486542
==========================================================================
487543
Total: 0 (HIGH: 0, CRITICAL: 0)
488544

@@ -1546,6 +1602,11 @@ mcr.microsoft.com/oss/open-policy-agent/gatekeeper:v3.11.1 (debian 11.6)
15461602
Total: 0 (HIGH: 0, CRITICAL: 0)
15471603

15481604

1605+
mcr.microsoft.com/oss/open-policy-agent/gatekeeper:v3.13.0 (debian 11.7)
1606+
========================================================================
1607+
Total: 0 (HIGH: 0, CRITICAL: 0)
1608+
1609+
15491610
usr/local/bin/operator (gobinary)
15501611
=================================
15511612
Total: 4 (HIGH: 4, CRITICAL: 0)

0 commit comments

Comments
 (0)