Skip to content

Releases: microsoft/azurelinux

3.0.20250602

10 Jun 23:51
64ef81a
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-6.6.92.2-1

Add kernel version and release nb into release nb for OOT Modules
Add tardev-snapshotter to SPECS/SPECS-EXTENDED
Fix Python-click ptest
Fix bug in OOT spec that depends on mlnx - bump to right mlnx release nb
Fix build of cassandra package
Fix perl-Net-SSLeay, perl-Module-Implementation, perl-URI, rubygem-introspection, rubygem-metaclass pTests
Fix ptest and installation issues for perl-CPAN-Changes
Fix reporting of build errors
Patch containerd2 for CVE-2025-22872
Patch libvirt for CVE-2024-1441, CVE-2024-2494
Patch moby-engine for CVE-2024-51744
Patch net-tools for CVE-2025-46836
Patch nodejs for CVE-2025-47279
Patch python-setuptools for CVE-2025-47273
Remove containerd
Remove psw protected zip file from upstream src (if psw cannot be found)
Remove packages available in the cloud-native repo (containernetworking-plugins, prometheus, helm, igm local-path-provisioner, node-problem-detector)
Remove packages available in the ms-oss repo (blobfuse2)
Upgrade erlang to 26.2.5.12; Patch erlang for CVE-2025-46712
Upgrade jimtcl to 0.83
Upgrade jose to 14
Upgrade kernel to 6.6.92.2
Upgrade kernel-lpg-innovate to 6.6.89.2
Upgrade rubygem-rexml to 3.3.9; Patch rubygem-rexml for CVE-2024-49761
Upgrade rust to 1.86.0
Upgrade tang to 15

2.0.20250602

06 Jun 19:47
52667b2
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-5.15.182.1-1

Fix bmake package test
Patch azl-compliance for CVE-2025-4574
Patch busybox for CVE-2023-39810
Patch cmake for CVE-2024-8096
Patch helm for CVE-2025-22872, CVE-2025-32386
Patch hvloader for CVE-2023-45236, CVE-2023-45237
Patch kubernetes for CVE-2025-22872
Patch libsoup for CVE-2025-2784, CVE-2025-32050, CVE-2025-32051, CVE-2025-32052, CVE-2025-32053, CVE-2025-46420, CVE-2025-46421
Patch mdadm for CVE-2023-28938
Patch moby-engine for CVE-2024-51744
Patch multus for CVE-2025-22872
Patch net-tools for CVE-2025-46836
Patch nodejs for CVE-2025-47279
Patch openvm-tools for CVE-2025-22247
Patch packer for CVE-2025-22872
Patch pytorch for CVE-2025-2953
Patch syslog-ng for CVE-2024-47619
Patch telegraf for CVE-2025-22872
Patch vitess for CVE-2025-22872
Patch yasm for CVE-2023-37732, CVE-2023-51258
Upgrade ansible to 2.14.18 for CVE-2024-8775, CVE-2024-9902
Upgrade erlang to 25.3.2.21 for CVE-2025-46712
Upgrade kernel to 5.15.182.1
Upgrade maven to 3.8.1 for CVE-2021-26291
Upgrade postgresql to 14.18 for CVE-2025-4207
Upgrade redis to 6.2.18 for CVE-2025-21605

3.0.20250521

27 May 19:46
3cd11c5
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-6.6.85.1-4

Backport upstream change to mock to disable ca-trust copying
Fix build for jsch
Fix build for jzlib
Fix ptest for Python-pytest-forked
Fix ptest for perl-cpan-meta-check
Fix ptest for python-Cryptography
Fix ptest for python-asn1crypto
Fix ptest for python-gast
Fix ptest for python-mako
Fix ptest for python-markdown
Fix ptest for python-more-itertools
Fix ptest for python-msgpack
Fix ptest for python-nocasedict
Fix ptest for python-oauthlib
Move bmake tests to check section
Patch boost for adding phoenix multiple defn patch needed by libetonyek
Patch busybox for CVE-2023-39810
Patch cni-plugins for CVE-2025-22872
Patch dnf5 for CVE-2024-1929, CVE-2024-1930, CVE-2024-2746
Patch docker-buildx for CVE-2025-0495
Patch edk2 for CVE-2024-2511, CVE-2024-38796, CVE-2024-4603
Patch glibc for pthread_cond_wait patch
Patch helm for CVE-2025-32386, CVE-2025-22872
Patch ig for CVE-2025-22872
Patch influxdb for CVE-2025-22872
Patch iniparser for CVE-2023-33461
Patch kernel-64k for enabling config options for GB200 and GB200F diags
Patch kernel-64k for solving EFI slack slots issue
Patch kubernetes for CVE-2025-22872
Patch kubevirt for CVE-2025-22872
Patch libsoup for CVE-2025-2784, CVE-2025-32050, CVE-2025-32051, CVE-2025-32052, CVE-2025-32053, CVE-2025-46420, CVE-2025-46421
Patch multus for CVE-2025-22872
Patch openvm-tools for CVE-2025-22247
Patch pytorch for CVE-2025-2953
Patch qemu for CVE-2024-26327, CVE-2024-26328, CVE-2024-4467, CVE-2024-7730, CVE-2024-6505, CVE-2024-4693, CVE-2024-3447, CVE-2024-3567
Patch rpm-ostree for CVE-2024-2905
Patch syslog-ng for CVE-2024-47619
Patch telegraf for CVE-2025-22872
Patch virtiofsd for CVE-2024-43806
Patch yasm for CVE-2023-51258, CVE-2023-37732
Update git packaging to install openssh-client instead of full openssh package. (Removed dependency on openssh-server)
Upgrade SymCrypt-OpenSSL to 1.8.1 and update mechanism for creating keysinuse logging directory.
Upgrade cuda to 570.133.20
Upgrade dom0 packages to v2411.19.1
Upgrade golang to 1.23.9 for CVE-2025-22873
Upgrade golang to 1.24.3 for CVE-2025-22873
Upgrade golang-jwt from 5.2.1 to 5.2.2
Upgrade kata-containers(-cc) to 3.15.0.aks0 release
Upgrade kernel-lpg-innovate to 6.6.85.1
Upgrade kyotocabinet to 1.2.80
Upgrade libgeotiff to 1.7.3
Upgrade lua-json to 1.3.4
Upgrade lua-lunitx to 0.8.1
Upgrade mailx from 12.5 to s-nail 14.9.25
Upgrade marisa to 0.2.6
Upgrade objenesis to 3.3
Upgrade perl-File-DesktopEntry
Upgrade perl-JSON-MaybeXS to 1.004008
Upgrade python-beautifulsoup4 to 4.12.3
Upgrade python-dmidecode to 3.12.3
Upgrade rp-pppoe to 4.0
Upgrade stunnel and promote to core
Upgrade xcb-util-wm to 0.4.2
Upgrade xdg-dbus-proxy to 0.1.6
Upgrade zenity to 3.44.1

3.0.20250429

05 May 15:42
7e483a8
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-6.6.85.1-2

Note that this update introduces Rust 1.85.0.

Add azl-otel-collector to SPECS/SPECS-EXTENDED
Add dxgkrnl module (this was inadvertently removed during migration from 2.0 to 3.0)
Add kata-packages-uvm-debug metapackage and reduce size of non-debug metapackage
Add libmambapy to Azure Linux
Add post and postun for mariadb-connector-c ensuring ldconfig is run
Add rubygem-sys-filesystem to SPECS/SPECS-EXTENDED
Add yq to SPECS/SPECS-EXTENDED
Add partial implementation of LVBS kernel in extended repo.
Fix flux package warnings in %prep section. Also relaxed pTest warning as fail and arm64 specific pTest build issue.
Fix perl test without module ptest
Fix build failures caused by javac version 6 not being supported
Patch apache-commons-digester for build error fix
Patch blobfuse2 for CVE-2025-30204
Patch bcc for CVE-2025-29481
Patch cf-cli for CVE-2025-22872
Patch ceph for CVE-2021-28361
Patch cmake for CVE-2024-48615
Patch containerized-data-importer for CVE-2025-22872
Patch coredns for CVE-2024-53259
Patch docker-compose for CVE-2025-22872
Patch edk2 openssl for CVE-2024-13176
Patch fcgi for CVE-2025-23016
Patch flux for CVE-2024-43806
Patch fluent-bit for CVE-2025-31498
Patch git-lfs for CVE-2025-22870
Patch gh for CVE-2025-22872
Patch gnutls for CVE-2024-12133
Patch grub2 to replace fgrep with grep
Patch etcd to 3.5.21 for CVE-2025-30204
Patch erlang to 26.2.5.11 for CVE-2025-30211, CVE-2025-32433
Patch influxdb for CVE-2025-22870, CVE-2024-51744
Patch memcached for CVE-2021-44647
Patch moby-containerd-cc for CVE-2024-40635, CVE-2025-27144
Patch mysql for CVE-2025-21490, CVE-2024-11053
Patch nginx to enable webdav module
Patch nfs-utils to include idmapd.conf and id_resolver.conf
Patch ocaml-astring for ptest
Patch ocaml-ctypes for ptest
Patch packer for CVE-2025-22872
Patch prometheus for CVE-2024-35255
Patch prometheus-adapter for CVE-2025-22872
Patch prometheus-node-exporter for CVE-2025-22870
Patch prometheus-process-exporter for CVE-2025-22870
Patch pgbouncer to 1.24.1 for CVE-2025-2291
Patch perl-json-any for ptest
Patch perl-yaml-tiny for ptest
Patch python-cherrypy for ptest
Patch python-ecdsa for ptest
Patch python-greenlet for ptest
Patch python-iniparse for ptest
Patch python-jwt for ptest
Patch python-requests for CVE-2024-35195
Patch python-typing-extensions for ptest
Patch rabbitmq-server for CVE-2025-30219
Patch skopeo
Patch sriov-network-device-plugin for CVE-2025-22872
Patch sphinxcontrib-xxxx for ptests
Patch sysbench for ptest
Patch tar for ptest
Patch tinyxml2 for CVE-2024-50615
Patch telegraf for CVE-2024-35255, CVE-2025-27144, CVE-2025-30215
Patch qemu for CVE-2021-20255, CVE-2023-6693, CVE-2023-6683
Patch valkey to 8.0.3 for CVE-2025-21605
Patch libsoup for CVE-2025-32908, CVE-2025-32914, CVE-2025-32913, CVE-2025-32906, CVE-2025-32909, CVE-2025-32910, CVE-2025-32912
Patch nodejs for CVE-2025-27516
Patch openssh for CVE-2025-32728
Remove containerd2 tardev-snapshotter patch for Kata CC support
Upgrade amtk to 5.6.1
Upgrade ansible-freeipa to 1.13.2
Upgrade containernetworking-plugins to 1.6.1
Upgrade espeak-ng to 1.52.0
Upgrade freexl to 2.0.0
Upgrade libblockdev to 3.2.0
Upgrade libgxps to 0.3.2
Upgrade librevenge to 0.0.5
Upgrade libspiro to 20240903
Upgrade lksctp-tools to 1.0.19
Upgrade libXScrnSaver to 1.2.4
Upgrade libutempter from 1.1.6 to 1.2.1
Upgrade nvmetcli to 0.7
Upgrade ocaml-xml-light to 2.5
Upgrade os-prober to 1.81
Upgrade osinfo-db to 20240701
Upgrade osinfo-db-tools to 1.12.0
Upgrade perl-Archive-Extract to 0.88
Upgrade perl-Class-Data-Inheritable to 0.09
Upgrade perl-Class-Tiny to 1.008
Upgrade perl-Config-AutoConf to 0.320
Upgrade perl-Date-Manip to 6.95
Upgrade perl-File-TreeCreate to 0.0.1
Upgrade perl-Importer to 0.026
Upgrade perl-Module-Build-Tiny to 0.051
Upgrade perl-Test-Simple to 1.302204
Upgrade perl-Test2-Tools-Explain to 0.02
Upgrade perl-Alien-pkgconf to 0.20
Upgrade python-colorama to 0.4.6
Upgrade python-curio to 1.6^1.1484546
Upgrade python-IPy to 1.01
Upgrade python-kdcproxy to 1.0.0
Upgrade python-lazy-object-proxy to 1.10.0
Upgrade python-pymongo to 4.2.0
Upgrade python-requests-toolbelt to 1.0.0
Upgrade python-blinker to 1.7.0
Upgrade python-cheetah to 3.2.6.post1
Upgrade rust to 1.85.0 and split out seperate rust 1.75 version.
Upgrade tk to 8.6.13
Upgrade uglify-js to 3.19.3
Upgrade xfconf to 4.18.3
Upgrade ypserv to 4.2
Upgrade zziplib to 0.13.74
Upgrade qtsvg to latest release
Upgrade hyphen-ca from 0.9.3 to 1.5
Upgrade hyphen-it from 0.20071127 to 5.1.1
Upgrade hyphen-tk from 0.20110620 to 0.20210322

Toolkit: Updated context to be used for HTTP request + refactoring

2.0.20250429

05 May 12:54
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-5.15.180.1-1

Patch application-gateway-kubernetes-ingress for CVE-2024-51744
Patch augeas for CVE-2025-2588
Patch bpftrace for CVE-2024-2313
Patch cf-cli for CVE-2024-51744
Patch cifs-utils for CVE-2025-2312
Patch cmake for CVE-2024-48615
Patch cni-plugins for CVE-2025-22872
Patch coredns for CVE-2025-29786, CVE-2024-51744
Patch crash for CVE-2021-20197, CVE-2022-47673, CVE-2022-47696, CVE-2022-37434
Patch cri-o for CVE-2024-9676, CVE-2025-21614
Patch curl for CVE-2025-0167
Patch dcos-cli for CVE-2024-51744
Patch erlang for CVE-2025-30211
Patch gdb for CVE-2022-48064, CVE-2022-48065, CVE-2022-47673, CVE-2022-47696
Patch giflib for CVE-2021-40633, CVE-2025-31344
Patch git-lfs for CVE-2025-22870
Patch golang for CVE-2025-22871
Patch golang-1.18 for CVE-2024-34158
Patch grpc for CVE-2023-31130
Patch hvloader for CVE-2022-36763, CVE-2022-36764, CVE-2022-36765
Patch jx for CVE-2024-51744
Patch kube-vip-cloud-provider for CVE-2024-51744
Patch kubernetes for CVE-2024-51744
Patch kubevirt for CVE-2023-48795, CVE-2025-22872, CVE-2024-51744
Patch libarchive for CVE-2024-48615
Patch libbpf for CVE-2025-29481
Patch libsoup for CVE-2025-32914, CVE-2025-32913, CVE-2025-32906
Patch libtiff for CVE-2023-6228
Patch moby-containerd for CVE-2024-40635
Patch moby-containerd-cc for CVE-2024-40635, CVE-2025-27144
Patch moby-engine for CVE-2025-30204
Patch openssh for CVE-2025-32728
Patch prometheus for CVE-2024-51744
Patch python3 for multiple CVEs in pip bundled wheel, CVE-2025-1795
Patch pytorch for CVE-2025-32434, CVE-2025-3730
Patch qemu for CVE-2024-4467, CVE-2024-3447, CVE-2024-6505, CVE-2023-1544, CVE-2023-2861, CVE-2023-3019, CVE-2023-3180, CVE-2023-3301, CVE-2023-3255
Patch rabbitmq-server for CVE-2025-30219
Patch reaper for CVE-2024-12905
Patch shadow-utils for CVE-2023-4641
Patch sriov-network-device-plugin for CVE-2025-22872
Patch telegraf for CVE-2025-30215, CVE-2025-22870, CVE-2024-51744
Patch tinyxml2 for CVE-2024-50615
Patch unzip for CVE-2021-4217
Patch wpa_supplicant for CVE-2025-24912
Upgrade azure-core/azurelinux to 2-perl-cve
Upgrade erlang to 25.3.2.20 for CVE-2025-32433
Upgrade etcd to 3.5.21 for CVE-2025-30204
Upgrade fcgi to 2.4.5 for CVE-2025-23016
Upgrade kernel to 5.15.180.1
Upgrade pgbouncer to 1.24.1 for CVE-2025-2291
Upgrade postfix to 3.7.4

3.0.20250402

09 Apr 00:56
39cc18a
Compare
Choose a tag to compare

Generic Kernel version-release: 6.6.79.1

Add %Check Section To Wget
Add Amdgpu Installation Instruction Doc
Add Arm64 Vhd Virt-Guest-Packages
Add Erofs-Utils Package
Add Kernel-Ipe Package To Specs-Extended
Add License Checker Exceptions For Openssl
Added Python-Pyproject-Api To Specs-Extended
Azurelinux-Repos: Add Cloud-Native Repo Subpackages
Bphilip/Refactor Version Entangle Check Add Release Number
Bug: Fix Remote Build Dependency Variability
Bugfix: 56213770, 56248605, Upgrade Cifs-Utils To 7.3
Containerd2: Provide The Capabilities Of Old-Package Containerd And Obsolete It
Contributing: Add Column For Indicating Branch Vs Tag
Fix Cve-2023-44487 For Moby-Containerd-Cc
Fix: Fix License Ci Break
Gdb: Enable Debugging All Targets
Glassfish-Annotation-Api: Build Error Fix
Kata(-Cc): Upgrade Kata-Containers(-Cc) To 3.2.0.Azl5
Kernel Upgrade To Version 6.6.82.1
Kernel(-64k): Add Patch To Revert New Uart Change
Modify Retries For Msopenjdk Download
Ocaml-Curses: Update To 1.0.11
Ocaml-Extlib: Update To 1.7.9
Ogdi: Update To 4.1.1
Opencryptoki: Update To 3.24.0
Openssl Speed Fixes
Optipng: Update To 0.7.8
Patch Application-Gateway-Kubernetes-Ingress For Cve-2025-30204
Patch Azcopy For Cve-2025-30204
Patch Binutils For Cve-2025-1744
Patch Ceph For Cve-2025-1744
Patch Cert-Manager For Cve-2025-30204
Patch Containerd And Containerd2 For Cve-2025-27144
Patch Coredns For Cve-2025-29786
Patch Coredns For Cve-2025-30204
Patch Cve-2020-8565 To Fix Local-Path-Provisioner
Patch Cve-2023-44487 And Cve-2023-35945 In Cmake
Patch Dcos-Cli For Cve-2025-27144
Patch Dracut For Systemd-Cryptsetup Module To Be Included
Patch Flannel For Cve-2025-30204
Patch Heimdal For Cve-2022-45142
Patch Ig For Cve-2025-27144
Patch Ig For Cve-2025-29786
Patch Jq For Cve-2024-53427
Patch Keda For Cve-2025-29786
Patch Keda For Cve-2025-30204, Cve-2025-29923
Patch Keras For Cve-2025-1550
Patch Kubernetes For Cve-2025-30204
Patch Libarchive For Cve-2025-1632, Cve-2025-25724
Patch Moby-Engine For Cve-2025-22868 And Cve-2025-22869
Patch Packer For Cve-2025-30204
Patch Promethes For Cve-2025-22868
Patch Prometheus For Cve-2025-30204
Patch Python-Jinja2 For Cve-2025-27516
Patch Python-Twisted To Fix Cve-2023-46137
Patch Pytorch For Cve-2021-22569, Cve-2024-7776
Patch Qtbase To Fix Cve-2025-30348
Patch Skopeo For Cve-2025-27144
Patch Telegraf For Cve-2025-22868, Cve-2025-22869
Patch Telegraf For Cve-2025-22870 And Cve-2024-51744
Patch Telegraf For Cve-2025-30204
Patch Vendored Openssl Code In Edk2 In 3.0
Perl-Net-Telnet: Update Version From 3.04 -> 3.05
Perl-Test-Harness: Update Version From 3.42 -> 3.50
Perl-Test-Inter: Update Version From 1.09 -> 1.11
Prometheus: Add Patch For Testquerierindexqueriesrace
Readline: Add Patch To Fix Crash When Readline Is Started With An Invalid Locale Specification
Relaxngdatatype: Fix The Build Error
Rename And Upgrade: Minizip 2.10.1 To Minizip-Ng 4.0.7
Resolve Emacs Cve-2024-53920
Restore Back Influx-Cli-Bash-Completion Subpackage And Remove It From Bash-Completion
Rsyslog - Add Patch For Issue #5158
Rsyslog - Add Patch For Issue #5158
Selinux-Policy: Add Cloud-Utils-Growpart Tmpfs Fix.
Units: Update To 2.23
Update Conda To 24.3.0 And Bring Missing Runtime Deps
Update Contributing Guide To Use 3.0 Branches
Update Contributing Guide To Use 3.0 Branches
Update Perl-File-Slurp To Version 9999.32-1
Update Perl-Importer To Version 0.026
Update Pull Request Guidelines Link To Anchor
Upgrade Flite Version To 2.2
Upgrade Glib To 2.78.6 For Cve-2024-34397
Upgrade Kernel To 6.6.79.1
Upgrade Libcdio To Version To 2.1.0
Upgrade Libcdio-Paranoia Version To 10.2+2.0.1
Upgrade Libcdr Version To 0.1.7
Upgrade Libdazzle Version To 3.44.0
Upgrade Libdc1394 Version To 2.2.7
Upgrade Libdvdnav Version To 6.1.1
Upgrade Libdwarf To 0.9.2 For Cve-2024-2002
Upgrade Libreswan To 4.15 For Cve-2024-3652, Cve-2024-2357, Cve-2023-30570
Upgrade Libsecret Version To 0.21.4
Upgrade Libssh To 0.10.6 For Cve-2023-6004, Cve-2023-6918 & Cve-2023-48795
Upgrade Libxslt To Fix Cve-2024-55549 And Cve-2025-24855
Upgrade Mariadb To 10.11.11 For Cve-2025-21490
Upgrade Memkind Version To 1.14.0
Upgrade Perl-Authen-Sasl Version To 2.1700
Upgrade Perl-B-Hooks-Endofscope Version To 0.28
Upgrade Perl-Business-Isbn-Data Version To 20240930.001
Upgrade Perl-Compress-Raw-Lzma Version To 2.213
Upgrade Perl-Config-Tiny Version To 2.30
Upgrade Perl-Crypt-Openssl-Random Version To 0.17
Upgrade Perl-Xstring To Version 0.005
Upgrade Php To 8.3.19 For Cve-2025-1219, Cve-2025-1736, Cve-2025-1861, Cve-2025-1734, Cve-2025-1217
Upgrade Plexus-Pom Version To 16
Upgrade Pps-Tools To Version 1.0.3
Upgrade Python-Dulwich Version To 0.21.7
Upgrade Python-Qrcode Version To 7.4.2
Upgrade Python-Rdflib Version To 7.0.0
Upgrade Python-Requests-File Version To 2.0.0
Upgrade Python-Requests-Kerberos To Version 0.14.0
Upgrade Python-Urwid Version To 2.6.14
Upgrade Python-Voluptuous Version To 0.15.2
Upgrade Python3-Typed_Ast To 1.5.4
Upgrade Rhash Version To 1.4.4
Upgrade Tzdata To 2025a Upgrade To Version 2025a
Upgrade Udica Version To 0.2.8
Upgrade Vim To 9.1.1198 For Cve-2025-29768
Upgrade Virt-P2v Version To 1.42.4
Upgrade:Perl-Crypt-Openssl-Random Version To 0.17
Upgrade:Perl-Data-Peek Version To 0.52
Upgraded Kde-Filesystem To Version 5
V4l-Utils: Fixed Build

2.0.20250402

04 Apr 21:39
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-5.15.176.3-3

Add msopenjdk rpm hash verification
Fix azcopy for CVE-2025-22868, CVE-2025-22870, and CVE-2025-30204
Fix azure-iot-sdk-c for CVE-2024-29195
Fix binutils for CVE-2025-1744
Fix ceph for CVE-2025-1744
Fix cert-manager for CVE-2025-30204
Fix clang16 for CVE-2023-29933
Fix cloud-hypervisor for CVE-2025-1744
Fix containerized-data-importer for CVE-2025-27144
Fix coredns for CVE-2024-53259 and CVE-2025-30204
Fix cri-o for CVE-2024-44337
Fix dcos-cli for CVE-2025-27144
Fix expat for CVE-2024-8176
Fix freetype to 2.13.1 for CVE-2025-27363
Fix gdb for CVE-2025-1176 and CVE-2025-1182
Fix gnutls for CVE-2024-12243
Fix grpc for CVE-2023-31147
Fix hvloader for CVE-2023-0465, CVE-2023-2650, CVE-2023-3817, CVE-2023-5678, and CVE-2024-0727
Fix influxdb for CVE-2024-51744 and CVE-2025-22870
Fix kata-containers(-cc) for CVE-2023-44487
Fix keda for CVE-2022-3162, CVE-2024-51744, and CVE-2025-22870
Fix kube-vip-cloud-provider for CVE-2022-3162
Fix kubernetes for CVE-2025-30204
Fix kubevirt for CVE-2025-22869
Fix libarchive for CVE-2025-25724
Fix libxslt for CVE-2024-55549 and CVE-2025-24855
Fix llvm for CVE-2023-29932
Fix llvm16 for CVE-2023-29941
Fix moby-compose for CVE-2025-22869
Fix moby-engine for CVE-2025-22868 and CVE-2025-22869
Fix moby-runc for CVE-2024-45310
Fix msft-golang for CVE-2024-34158, CVE-2024-45336, CVE-2024-45341, and CVE-2025-22870
Fix nodejs for CVE-2025-27516
Fix openssl vendored code in edk2 in 2.0 and hvloader in 2.0
Fix packer for CVE-2024-51744, CVE-2025-22870, and CVE-2025-30204
Fix pam for CVE-2024-10041
Fix prometheus for CVE-2025-30204
Fix python-jinja2 for CVE-2025-27516
Fix qt5-qtbase to fix CVE-2024-25580
Fix qemu for CVE-2023-5088, CVE-2023-6683, and CVE-2023-6693
Fix reaper for CVE-2024-28863
Fix rook for CVE-2022-3162 and CVE-2025-27144
Fix ruby for CVE-2025-27219, CVE-2025-27220, and CVE-2025-27221
Fix skopeo for CVE-2025-27144
Fix subversion for CVE-2024-46901
Fix telegraf for CVE-2025-22868, CVE-2025-22869, CVE-2025-27144, and CVE-2025-30204
Fix terraform for CVE-2025-22869 and CVE-2025-30204
Fix vitess for CVE-2024-53257 and CVE-2025-22870
Fix xorg-x11-server for CVE-2025-26594, CVE-2025-26595, CVE-2025-26596, CVE-2025-26597, CVE-2025-26598, CVE-2025-26599, CVE-2025-26600, and CVE-2025-26601
Recreate cloud-hypervisor patch for CVE-2025-1744
Resolve emacs for CVE-2024-53920
Resolve hvloader merge issues
Upgrade mariadb to 10.6.21 for CVE-2025-21490
Upgrade mysql to 8.0.41 for CVE-2025-21490
Upgrade php to 8.1.32 for CVE-2025-1217, CVE-2025-1219, CVE-2025-1734, CVE-2025-1736, and CVE-2025-1861
Upgrade python-virtualenv to 20.26.6 for CVE-2024-53899
Upgrade tzdata to 2025a
Upgrade vim to 9.1.1198 for CVE-2025-27423 and CVE-2025-29768

3.0.20250311

13 Mar 15:04
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-6.6.78.1-3

Add curl ptests
Add perl-BDB to SPECS-EXTENDED
Add ptest for coredns from 2.0 to 3.0
Add python-sphinxygen to SPEC_EXTENDED
Add python-flaky to SPECS-EXTENDED
Adjust dracut patch to fix fips module block list behavior
Avoid dracut collision between [mktemp] and [find -not -path '.ko']
Upgrade curl to 8.11.1 to address CVE-2024-11053
Deprecate Go version 1.22 series
Enable Tegra IVC protocol in kernel-64k
Enable tui for perf
Fix Dracut overlay module to correctly locate 'chcon'
Fix avahi to fix CVE-2024-52616
Fix azcopy for CVE-2025-22868
Fix bind file conflicts
Fix bind postun
Fix binutils CVE-2025-0840 CVE-2025-1176 CVE-2025-1178 CVE-2025-1181 CVE-2025-1182
Fix build of Extended Package clucene
Fix build of Extended Package package jlex
Fix build of Extended Package servletapi4
Fix build of Extended Package servletapi5
Fix build of python-podman-api
Fix cert-manager for CVE-2025-22868, CVE-2025-22869 & CVE-2025-27144
Fix cf-cli for CVE-2025-22869
Fix cf-cli to fix CVE-2023-45288
Fix cloud-hypervisor-cvm for CVE-2024-12797
Fix containerd for CVE-2024-28180, CVE-2023-45288
Fix containerd2 ptest after adding tardev-snapshotter patch
Fix containerized-data-importer for CVE-2023-3978 CVE-2025-22868 CVE-2025-27144 CVE-2023-45288
Fix coredns for CVE-2025-22868
Fix curl for CVE-2025-0665, CVE-2025-0167, CVE-2025-0725
Fix docker-buildx for CVE-2025-22869
Fix docker-compose for CVE-2025-22869 & CVE-2024-10846
Fix emacs for CVE-2025-1244
Fix flannel to fix CVE-2023-44487 CVE-2023-45288
Fix fluent-bit for CVE-2024-50608 and CVE-2024-50609
Fix gh for CVE-2025-27144, CVE-2025-22869
Fix giflib for CVE-2023-39742
Fix influxdb for CVE-2025-22868 & CVE-2025-27144
Fix iniparser for CVE-2025-0633
Fix jbigkit build
Fix keda for CVE-2025-22868 & CVE-2025-27144
Fix kubernetes for CVE-2025-22868, CVE-2025-22869 & CVE-2025-27144
Fix kubevirt for CVE-2023-44487
Fix kubevirt for CVE-2025-22869
Fix kubevirt to fix CVE-2023-45288
Fix kured to fix CVE-2023-45288
Fix ldns intermittent build failure
Fix libcap for CVE-2025-1390
Fix libcap ptest
Fix libdb for CVE-2020-13435
Fix libxml2 for CVE-2025-24928, CVE-2024-56171, CVE-2025-27113 & CVE-2024-25062
Fix local-path-provisioner for CVE-2023-44487
Fix local-path-provisioner to fix CVE-2023-39325, CVE-2023-45288
Fix memcached for CVE-2021-43519
Fix moby-containerd-cc for CVE-2024-28180, CVE-2023-45288
Fix moby-engine to fix CVE-2023-45288
Fix mysql for CVE-2025-0725
Fix node-problem-detector for CVE-2025-22868 & CVE-2025-22869
Fix node-problem-detector to fix CVE-2023-45288
Fix nodejs for CVE-2025-22150, CVE-2025-23085, CVE-2024-22020, CVE-2024-22195
Fix packer for CVE-2025-22869, CVE-2025-22868 & CVE-2024-28180 CVE-2025-27144
Fix prometheus for CVE-2023-44487 for prometheus
Fix prometheus-node-exporter to fix CVE-2023-45288
Fix python-execnet package test
Fix python-tqdm for CVE-2024-34062
Fix raptor2build
Fix vim for CVE-2025-26603 & CVE-2025-1215
Fix vitess for CVE-2025-22868
Introduce Go version to 1.24.1-1
Introduce signed packages for edk2-hvloader and kernel-mshv
Kernel RT upgrade to version 6.6.76.1-rt49
Kernel RT upgrade to version 6.6.77.1-rt50
Kernel upgrade to version 6.6.76.1
Kernel upgrade to version 6.6.78.1
Modify toolkit's build_go_vendor_cache.sh script to be used for most go packages
Patch CVE-2023-27043 in python3 by patching
Patch bind uninitialized memory error
Patch ceph for CVE-2012-2677
Patch junit to fix CVE-2020-15250
Patch kernel(-64k) to revert new UART change
Promote libecap from extended to core
Promote libtdb from Extended to Core and upgrade to version 1.4.12
Promote squid from Extended to Core and upgrade to version 6.13
Re-enable glibc nscd build and packaging
Remove fipscheck package from SPECS-EXTENDED
Remove guava20 from SPECS-EXTENDED
Update PEGTL version to 3.2.8
Update babeltrace to 1.5.11-1
Update babl to 0.1.108-1
Update beust-jcommander to version 2.0
Update golang build requirements for
Update libipt to 2.1.1-1
Update libjcat to 0.2.2
Update libmad to 0.16.4-1
Update libmediaart to 1.9.6-1
Update libnvidia-container and nvidia-container-toolkit to use the highest golang before 1.24
Update perl-Color-ANSI-Util to 0.165
Update perl-ColorThemeBase-Static to version 0.009
Update perl-Devel-Size to version 0.84
Update perl-Devel-Size to version 0.84
Update perl-File-Remove to version 1.61-1
Update perl-IO-AIO to version 4.81-1
Upgarde python-soupsieve to version 2.6
Upgrade SuperLU version to 7.0.0
Upgrade advancecomp to 2.6 version
Upgrade apache-commons-daemon to fix build error
Upgrade apache-parent to 31
Upgrade asio to 1.31.0-1
Upgrade bats to 1.11.0-1
Upgrade bind to 9.20.5 to fix CVE-2024-12705 & CVE-2024-11187
Upgrade cf-cli to 8.7.11 address CVE-2023-44487
Upgrade cim-schema to version 2.54.1
Upgrade coredns to 1.11.4 fix CVE-2023-44487
Upgrade discount to version 2.2.7
Upgrade docker-cli to 25.0.7 to fix CVE-2023-45288
Upgrade dotconf version to 1.4.1
Upgrade dropwatch version to 1.5.4
Upgrade drpm version to 0.5.2
Upgrade edac-utils version to 0.18
Upgrade efi-rpm-macros version to 5
Upgrade erlang to 26.2.5.9 for CVE-2025-26618
Upgrade exiv2 to version 0.28.3
Upgrade fetchmail to version 6.4.39
Upgrade fltk version to 1.3.8
Upgrade fuse-overlayfs to 1.14
Upgrade fuse-sshfs version to 3.7.3
Upgrade glm to 1.0.1
Upgrade go to 1.23.7 for CVE
Upgrade go-rpm-macrosto 3.6.0
Upgrade golang to 1.24.1.
Upgrade gom to 0.5.3
Upgrade google-api-python-client to 2.140.0
Upgrade graphene to 1.10.8-1
Upgrade gsl to 2.8-1
Upgrade gssdp to 1.6.3
Upgrade gssntlmssp to 1.3.1-1
Upgrade hdf to 4.3.0
Upgrade hiera version to 3.12.0
Upgrade hunspell-nl to version 2.20.19
Upgrade ig to v0.37.0.
Upgrade indent version to 2.2.13
Upgrade influxdb and influx-cli to 2.7.5 to fix CVE-2023-44487
Upgrade intel-cmt-cat version to 24.05
Upgrade ioping version to 1.3
Upgrade ipcalc version to 1.0.3
Upgrade iprutils version to 2.4.19
Upgrade irssi version to 1.4.5
Upgrade jx to 3.10.182 to fix CVE-2023-39325 and CVE-2023-44487
Upgrade kubernetes to 1.30.10 fix CVE-2025-0426
Upgrade libbsd to version 0.12.2
Upgrade libcli version to 1.10.7
Upgrade libcmis version to 0.6.2
Upgrade libdap version to 3.21.0.27
Upgrade libdatrie version to 0.2.13
Upgrade libdmx version to 1.1.5
Upgrade libdvdread version to 6.1.3
Upgrade libgee to version 0.20.6-1
Upgrade libgphoto2 to latest upstream
Upgrade libid3tag to version 0.16.3
Upgrade libpinyin version to 2.9.92
Upgrade libplist to 2.6.0
Upgrade libqb version to 2.0.8
Upgrade librabbitmq version to 0.14.0
Upgrade libraqm version to 0.8.0
Upgrade libsass version to 3.6.6
Upgrade libsigc++20 version to 2.12.1
Upgrade libsigsegv version to 2.14
Upgrade libsmbios version to 2.4.3
Upgrade libteam to version 1.32
Upgrade libthai to version 0.1.29
Upgrade libtommath to version 1.3.1~rc1
Upgrade libuninameslist to version 20230916
Upgrade libvarlink to version 23
Upgrade libverto to version 0.3.2
Upgrade libwnck3 to version 43.1
Upgrade libwpe to version 1.15.2
Upgrade maven-parent version to 41
Upgrade mcelog to version 175
Upgrade meanwhile to version 1.1.1
Upgrade minicom version to 2.9
Upgrade mobile-broadband-provider-info to version 20240407
Upgrade mt-st to version 1.7
Upgrade nilfs-utils to version 2.2.11
Upgrade node-problem-detector to 0.8.20 fix CVE-2023-44487
Upgrade nvidia-container-toolkit and libnvidia-container to 1.17.4 for CVE-2025-23359
Upgrade ocaml-calendar to version 3.0.0
Upgrade ocaml-csv to version 2.4
Upgrade ocaml-tyxml to version 4.6.0
Upgrade openoffice-lv to version 1.4.0
Upgrade openssl to 3.3.3
Upgrade pcp to 6.3.2 and libpfm to 4.13.0
Upgrade perl-B-Keywords version to 1.27
Upgrade perl-Convert-ASN1 version to 0.34
Upgrade perl-Crypt-OpenSSL-Guess to 0.15
Upgrade perl-File-Find-Rule-Perl version to 1.16
Upgrade perl-File-Slurper version to 0.014
Upgrade perl-MIME-Charset version to 1.013.1
Upgrade perl-MRO-Compat to version 0.15
Upgrade perl-Mail-IMAPTalk to version 4.06
Upgrade perl-Math-Int64 to version 0.57
Upgrade perl-Module-Signature to version 0.89
Upgrade perl-Mozilla-CA to version 20240730
Upgrade perl-Net-Daemon to version 0.49
Upgrade perl-Net-LibIDN2 to version 1.02
Upgrade perl-Object-HashBase to version 0.013
Upgrade perl-PAR-Dist to version 0.53
Upgrade perl-Parallel-Iterator to version 1.002
Upgrade perl-PerlIO-utf8_strict version to 0.010
Upgrade perl-Pod-Markdown version to 3.400
Upgrade perl-Razor-Agent to version 2.86
Upgrade perl-Regexp-Pattern-Perl to version 0.007
Upgrade perl-Role-Tiny to version 2.002004
Upgrade perl-SNMP_Session to version 1.16
Upgrade perl-Scope-Upper to version 0.34
Upgrade perl-String-CRC32 to version 2.100
Upgrade perl-Term-UI version to 0.50
Upgrade perl-Test-EOL to version 2.02
Upgrade perl-Test-File to version 1.99.3
Upgrade perl-Test-Manifest to version 2.024
Upgrade perl-Test-Synopsis to version 0.17
Upgrade perl-Test-Warn version to 0.37
Upgrade perl-Text-CSV_XS version to 1.60
Upgrade perl-Tree-DAG_Node version to 1.32
Upgrade perl-YAML-Syck version to 1.34
Upgrade perltidy to version 20240903
Upgrade postgresql to 16.7 to fix CVE-2025-1094
Upgrade procmail to version 3.24
Upgrade ps_mem to version 3.14
Upgrade pyatspi version to 2.46.1
Upgrade pyserial to version 3.5
Upgrade python-PyMySQL version to 1.1.1
Upgrade python-astroid version to 3.3.8
Upgrade python-augeas version to 1.1.0
Upgrade python-configshell to version 1.1.3...

Read more

2.0.20250304

06 Mar 22:23
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-5.15.176.3-3

Append kernel key with Mariner Trusted Base CA
Disable kernel configuration for AX25 amateur radio protocol support in response to CVE-2024-35887
Fix avahi to fix CVE-2024-52616
Fix binutils CVE-2025-1176, CVE-2025-1178, CVE-2025-0840, CVE-2025-1181, CVE-2025-1182
Fix blobfuse2 for CVE-2025-22868
Fix busybox to fix CVE-2022-48174
Fix c-ares for CVE-2024-25629
Fix cert-manager for CVE-2025-22868, CVE-2025-22869, CVE-2025-27144
Fix cloud-hypervisor-cvm for CVE-2024-12797
Fix coredns for CVE-2025-22868
Fix coredns to fix its %check
Fix cri-o for CVE-2023-6476 & CVE-2023-0778
Fix curl for CVE-2024-9681, CVE-2024-11053
Fix emacs for CVE-2025-1244
Fix erlang for CVE-2025-26618
Fix fluent-bit for CVE-2024-50608 and CVE-2024-50609
Fix giflib for CVE-2023-39742 in 2.0
Fix glib for CVE-2023-29499, CVE-2023-32643 and CVE-2023-32636
Fix gnutls for CVE-2024-12133
Fix grpc for CVE-2024-25629
Fix influxdb for CVE-2025-27144
Fix javapackages-bootstrap for CVE-2021-36373 [Medium], CVE-2021-36374
Fix keda for CVE-2024-28180, CVE-2025-27144
Fix kube-vip-cloud-provider for CVE-2025-27144
Fix kubernetes for CVE-2025-22868, CVE-2025-22869 & CVE-2025-27144
Fix kubevirt for CVE-2023-3978
Fix libcap for CVE-2025-1390
Fix libtasn1 to address CVE-2024-12133
Fix libtiff for CVE-2023-3164
Fix libxml2 for CVE-2025-24928, CVE-2025-27113 & CVE-2024-56171
Fix mdadm to fix CVE-2023-28736
Fix moby-containerd for CVE-2025-27144
Fix moby-containerd-cc for CVE-2024-28180
Fix moby-engine to fix CVE-2024-23650
Fix mysql for CVE-2025-0725
Fix netplan for CVE-2022-4968
Fix nginx for CVE-2025-23419
Fix node-problem-detector for CVE-2025-22868
Fix nodejs18 for CVE-2024-34064, CVE-2025-22150, CVE-2025-23085, CVE-2024-22020, CVE-2024-22195
Fix opensc for CVE-2023-5992, CVE-2023-40660 and CVE-2024-1454
Fix openssh for CVE-2025-26465
Fix packer for CVE-2024-28180. CVE-2025-22868, CVE-2025-22869, CVE-2025-27144
Fix prometheus-adapter for CVE-2022-3162
Fix ptest for libcap
Fix python-execnet ptest
Fix python-twisted for CVE-2023-46137
Fix python3 for CVE-2023-27043, CVE-2024-9287, CVE-2025-0938
Fix rabbitmq-server to fix CVE-2023-50966
Fix reaper for CVE-2020-24025, CVE-2024-52798
Fix rubygem-rexml for CVE-2024-39908
Fix rust for CVE-2024-9681
Fix vim for CVE-2025-26603 & CVE-2025-1215
Fix vitess for CVE-2024-45339, CVE-2025-22868
Fix xorg-x11-server for CVE-2024-0408
Print errors when creating directories in makefile
Ugrade kernel to version 5.15.176.3
Upgrade msft-golang to version 1.23.6 to fix CVE-2025-25199
Upgrade nvidia-container-toolkit and libnvidia-container to 1.17.4 for CVE-2025-23359
Upgrade postgresql to 14.16 to fix CVE-2025-1094

2.0.20250207

12 Feb 15:08
Compare
Choose a tag to compare

Generic Kernel version-release: kernel-5.15.173.1-2

Add logging for missed pre-cacher download error.
Build PCI_HYPERV as built-in
Bump gcr to 3.38.1 to fix a build break.
Enable support of luajit for fluent-bit
Patch application-gateway-kubernetes-ingress for CVE-2024-45338
Patch cert-manager for CVE-2024-12401
Patch cert-manager for CVE-2024-45338
Patch cf-cli for CVE-2024-45338
Patch cmake for CVE-2024-11053
Patch cmake to fix CVE-2024-9681
Patch cni-plugins for CVE-2024-45338
Patch containerized-data-importer for CVE-2024-45338
Patch cri-o patch logic & add patches for CVE-2022-4318, CVE-2024-9341 & CVE-2024-45338
Patch cri-tools for CVE-2024-45338
Patch gh for CVE-2024-45338
Patch git for CVE-2024-50349 and CVE-2024-52006
Patch git-lfs for CVE-2024-53263
Patch helm for CVE-2024-45338
Patch influxdb for CVE-2024-28180
Patch influxdb for CVE-2024-45338
Patch keda for CVE-2024-45338
Patch kubernetes for CVE-2024-10220
Patch kubernetes for CVE-2024-45338
Patch kubevirt for CVE-2024-45338
Patch libxml2 for CVE-2022-49043
Patch moby-containerd for CVE-2024-28180
Patch multus for CVE-2024-45338
Patch mysql to fix CVE-2024-9681
Patch openmpi to fix CVE-2022-47022
Patch packer for CVE-2024-45338
Patch packer for CVE-2025-21613 and CVE-2025-21614
Patch prometheus-adapter for CVE-2024-45338
Patch python-jinja2 for CVE-2024-56201, CVE-2024-56326
Patch rook for CVE-2024-28180
Patch rsyslog for issue 5158
Patch socat for CVE-2024-54661
Patch sriov-network-device-plugin for CVE-2024-45338
Patch sriov-network-device-plugin for CVE-2024-45339
Patch telegraf for CVE-2024-45337 & CVE-2024-45338
Patch terraform for CVE-2024-45338 and CVE-2023-0475
Patch vim for CVE-2025-22134
Patch vim to fix CVE-2025-24014
Patch vitess for CVE-2024-45338
Patch xerces-c for CVE-2024-23807
Remove FDK-AAC-FREE
Remove extended packages opus and opusfile
Upgrade fluent-bit to 3.0.6
Upgrade msft-golang to version 1.23.3
Upgrade redis to 6.2.17 to fix CVE-2024-46981
Upgrade rsync to 3.4.1 to fix multiple CVEs