Skip to content

1.0 CBL-Mariner March 2022 Update 3

Choose a tag to compare

@jslobodzian jslobodzian released this 07 Apr 05:16
· 585 commits to 1.0 since this release

Backport systemd dhcp fix and enable netplan
Backport SELinux policy updates and SELinux size reduction for policy base
Add libselinux build requirements to coreutils/findutils to enable SELinux support (ls -Z and find -context)
Port cloud-init ovf_is_accessible DataSourceAzure.py fix
Disable kernel fw loader fallback
Automatic tzdata update.
Bump github.com/stretchr/testify from 1.7.0 to 1.7.1 in /toolkit/tools

Patch kernel to address CVE-2022-1016
Upgrade powershell to 7.2.2 to resolve CVE-2020-8927
Upgrade vim to 8.2.4563 to fix CVE-2022-0943
Upgrade python to 3.7.11 to fix CVE-2021-3737
Upgrade golang to 1.16.15 to address CVE-2022-24921
Upgrade httpd to 2.4.53 to fix CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943
Patch libvirt for CVE-2021-3631 & CVE-2021-3667
Patch libtiff to fix CVE-2022-0561, CVE-2022-0562 & CVE-2022-0891
Upgrade bind to 9.16.27 to address CVE-2021-25220 & CVE-2022-0396
Patch qemu-kvm to fix CVE-2021-3607, 3608, 3930, 3947, 4145