Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package kubernetes1.24 for openSUSE:Factory checked in at 2023-06-20 16:49:08 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/kubernetes1.24 (Old) and /work/SRC/openSUSE:Factory/.kubernetes1.24.new.15902 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "kubernetes1.24" Tue Jun 20 16:49:08 2023 rev:10 rq:1093893 version:1.24.15 Changes: -------- --- /work/SRC/openSUSE:Factory/kubernetes1.24/kubernetes1.24.changes 2023-06-16 16:55:40.113999230 +0200 +++ /work/SRC/openSUSE:Factory/.kubernetes1.24.new.15902/kubernetes1.24.changes 2023-06-20 16:49:18.727705338 +0200 @@ -1,0 +2,7 @@ +Tue Jun 20 07:00:47 UTC 2023 - Priyanka Saggu <priyanka.sa...@suse.com> + +- remove: kube-apiserver-admission-plugin-policy.patch + * patch included upstream in the v1.24.15 patch version release +- remove: kubernetes1.24.13.obscpio + +------------------------------------------------------------------- @@ -48,0 +56,8 @@ + +------------------------------------------------------------------- +Thu Jun 8 04:42:55 UTC 2023 - Priyanka Saggu <priyanka.sa...@suse.com> +Security Patch Fix for CVE-2023-2727 (bsc#1211630) and CVE-2023-2728 (bsc#1211631) +* added patch: kube-apiserver-admission-plugin-policy.patch +* this new kube-apiserver component patch prevents ephemeral containers: + ** from using an image that is restricted by ImagePolicyWebhook (CVE-2023-2727) + ** from bypassing the mountable secrets policy enforced by the ServiceAccount admission plugin (CVE-2023-2728) Old: ---- kubernetes-1.24.13.obscpio ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ kubernetes1.24.spec ++++++ --- /var/tmp/diff_new_pack.UtotUW/_old 2023-06-20 16:49:20.075713440 +0200 +++ /var/tmp/diff_new_pack.UtotUW/_new 2023-06-20 16:49:20.075713440 +0200 @@ -73,6 +73,7 @@ + # packages to build containerized control plane %package apiserver