Skip to content

Commit

Permalink
Adding references to bsc#1216123
Browse files Browse the repository at this point in the history
Signed-off-by: David Cassany <[email protected]>
  • Loading branch information
davidcassany committed Nov 22, 2023
1 parent 3a6ffb2 commit e37e2e6
Showing 1 changed file with 3 additions and 2 deletions.
5 changes: 3 additions & 2 deletions adoc/release-4.2.10.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,13 @@

=== Cilium Update

4.2.10 brings in a Cilium addon rebuild to include fixes for bsc#1215713. More specific, the build of Cilium and Envoy now includes a patched version of nghttp2 codec.
4.2.10 brings in a Cilium addon rebuild to include fixes for bsc#1215713 and bsc#1216123. More specific, the build of Cilium and Envoy now includes a patched version of nghttp2.

=== Required Actions

* Run `skuba addons upgrade apply` to update Cilium images to rev6 which has the bug fixes to be installed.

=== Bugs Fixed in 4.2.10 since 4.2.9

* link:https://bugzilla.suse.com/show_bug.cgi?id=1215713[bsc#1215713] [cilium] VUL-0: CVE-2023-35945: nghttp2: HTTP/2 memory leak in nghttp2 codec
* link:https://bugzilla.suse.com/show_bug.cgi?id=1215713[bsc#1215713] [cilium] VUL-0: CVE-2023-35945: nghttp2: HTTP/2 memory leak in nghttp2 codec
* link:https://bugzilla.suse.com/show_bug.cgi?id=1216123[bsc#1216123] [cilium] VUL-0: CVE-2023-44487: nghttp2: HTTP/2 Rapid Reset Attack

0 comments on commit e37e2e6

Please sign in to comment.