From 5671b3295f1a6dbab00eb92ae994f746088f3607 Mon Sep 17 00:00:00 2001 From: "dsoni@redhat.com" Date: Thu, 14 Mar 2024 19:25:54 +0530 Subject: [PATCH] Content creation for 1.10.3 RN --- modules/gitops-release-notes-for-1-10-3.adoc | 33 ++++++++++++++++++++ release_notes/gitops-release-notes.adoc | 3 ++ 2 files changed, 36 insertions(+) create mode 100644 modules/gitops-release-notes-for-1-10-3.adoc diff --git a/modules/gitops-release-notes-for-1-10-3.adoc b/modules/gitops-release-notes-for-1-10-3.adoc new file mode 100644 index 000000000000..bdad37f982c7 --- /dev/null +++ b/modules/gitops-release-notes-for-1-10-3.adoc @@ -0,0 +1,33 @@ +// Module included in the following assembly: +// +// * release_notes/gitops-release-notes.adoc + +:_mod-docs-content-type: REFERENCE +[id="release-notes-for-gitops-title-1-10-3_{context}"] += Release notes for {gitops-title} 1.10.3 + +{gitops-title} 1.10.3 is now available on {OCP} 4.12, 4.13, and 4.14. + +[id="errata-updates-1-10-3_{context}"] +== Errata updates + +[id="rhsa-2024:1345-gitops-1-10-3-security-update-advisory_{context}"] +=== RHSA-2024:1345 - {gitops-title} 1.10.3 security update advisory + +Issued: 2024-03-15 + +The list of security fixes that are included in this release is documented in the following advisory: + +* link:https://access.redhat.com/errata/RHSA-2024:1345[RHSA-2024:1345] + +If you have installed the {gitops-title} Operator, run the following command to view the container images in this release: + +[source,terminal] +---- +$ oc describe deployment gitops-operator-controller-manager -n openshift-operators +---- + +[id="fixed-issues-1-10-3_{context}"] +== Fixed issues + +Before this update, due to the incorrect filtering of URL protocols in the Argo CD application summary component, an attacker could use cross-site scripting with permission to edit the application. This update fixes the issue by upgrading the Argo CD version to 2.8.12, which patches this vulnerability. https://issues.redhat.com/browse/GITOPS-4209[GITOPS-4209] diff --git a/release_notes/gitops-release-notes.adoc b/release_notes/gitops-release-notes.adoc index c3548e5062f5..c668798de02d 100644 --- a/release_notes/gitops-release-notes.adoc +++ b/release_notes/gitops-release-notes.adoc @@ -31,6 +31,9 @@ include::modules/gitops-release-notes-1-11-1.adoc[leveloffset=+1] // Release notes for Red Hat OpenShift GitOps 1.11.0 include::modules/gitops-release-notes-1-11-0.adoc[leveloffset=+1] +// Release notes for Red Hat OpenShift GitOps 1.10.3 +include::modules/gitops-release-notes-for-1-10-3.adoc[leveloffset=+1] + // Release notes for Red Hat OpenShift GitOps 1.10.2 include::modules/gitops-release-notes-1-10-2.adoc[leveloffset=+1]