CRI-O - v1.20.9

Security

CRI-O v1.20.9

The release notes have been generated for the commit range v1.20.7...v1.20.9 on Thu, 21 Jul 2022 08:55:21 CEST.

Downloads

Download one of our static release bundles via our Google Cloud Bucket:

Changelog since v1.20.8

Changes by Kind

Feature

  • Added container_runtime_crio_containers_oom_total and container_runtime_crio_containers_oom metrics,
    which collects out of memory (oom) containers. (#5706, @haircommander)

Bug or Regression

  • Fix a bug where ExecSync requests (exec probes) could use an arbitrary amount of memory and disk. Output from ExecSync requests is now limited to 16MB (the amount that exec output was limited to in the dockershim). Disk limiting requires conmon 2.1.2 to work. See https://github.com/cri-o/cri-o/security/advisories/GHSA-fcm2-6c3h-pg6j and CVE-2022-1708 for more information. (#5951, @haircommander)

Dependencies

Added

Nothing has changed.

Changed

Removed

Nothing has changed.


Details

date
July 21, 2022, 6:59 a.m.
name
v1.20.9
type
Patch
👇
Register or login to:
  • 🔍View and search all CRI-O releases.
  • 🛠️Create and share lists to track your tools.
  • 🚨Setup notifications for major, security, feature or patch updates.
  • 🚀Much more coming soon!
Continue with GitHub
Continue with Google
or