From 630af564be323ac9620257214981c49b0ea4f2e6 Mon Sep 17 00:00:00 2001 From: Sascha Grunert Date: Wed, 15 Mar 2023 15:22:21 +0100 Subject: [PATCH] Update cri-tools to v1.26.1 Addresses CVE-2022-41723: https://github.com/advisories/GHSA-vvpx-j8f3-3w6h Signed-off-by: Sascha Grunert --- build/dependencies.yaml | 2 +- cluster/gce/gci/configure.sh | 6 +++--- cluster/gce/windows/k8s-node-setup.psm1 | 4 ++-- 3 files changed, 6 insertions(+), 6 deletions(-) diff --git a/build/dependencies.yaml b/build/dependencies.yaml index 6489375a86f..a47347f4ff2 100644 --- a/build/dependencies.yaml +++ b/build/dependencies.yaml @@ -46,7 +46,7 @@ dependencies: # CRI Tools - name: "crictl" - version: 1.26.0 + version: 1.26.1 refPaths: - path: cluster/gce/windows/k8s-node-setup.psm1 match: CRICTL_VERSION = diff --git a/cluster/gce/gci/configure.sh b/cluster/gce/gci/configure.sh index 9c9e0c3139c..8138ad7ad79 100644 --- a/cluster/gce/gci/configure.sh +++ b/cluster/gce/gci/configure.sh @@ -32,9 +32,9 @@ DEFAULT_AUTH_PROVIDER_GCP_HASH_AMD64='88d9fa581002973170ca58427763f00355b24fbabd DEFAULT_AUTH_PROVIDER_GCP_VERSION='v0.24.0' # TODO (SergeyKanzhelev): fill up for npd 0.8.9+ DEFAULT_NPD_HASH_ARM64='8ccb42a862efdfc1f25ca9a22f3fd36f9fdff1ac618dd7d39e3b5991505dd610d432364420896ad71f42197a116f28a85dde58b129baa075ebb7312caa57f852' -DEFAULT_CRICTL_VERSION='v1.26.0' -DEFAULT_CRICTL_AMD64_SHA512='a3a2c02a90b008686c20babaf272e703924db2a3e2a0d4e2a7c81d994cbc68c47458a4a354ecc243af095b390815c7f203348b9749351ae817bd52a522300449' -DEFAULT_CRICTL_ARM64_SHA512='4c7e4541123cbd6f1d6fec1f827395cd58d65716c0998de790f965485738b6d6257c0dc46fd7f66403166c299f6d5bf9ff30b6e1ff9afbb071f17005e834518c' +DEFAULT_CRICTL_VERSION='v1.26.1' +DEFAULT_CRICTL_AMD64_SHA512='e3a20c4d18bbbd9f5dc303e90b649181f9b8242758de58d04ea8acd0d3da32919b8859e90b6602354755dc82b79833caf30510e5a27b0ebc6a2b1545d744d4cc' +DEFAULT_CRICTL_ARM64_SHA512='605d8fe73e7e0b93dfac9ea90548e7334b55dda1f0abeb4c3382ae15d6d250a71fccfde20e8fd68bde59b4c1d54ec69ef295a2aa2119e8579d60d0dbcf380d2e' DEFAULT_MOUNTER_TAR_SHA='7956fd42523de6b3107ddc3ce0e75233d2fcb78436ff07a1389b6eaac91fb2b1b72a08f7a219eaf96ba1ca4da8d45271002e0d60e0644e796c665f99bb356516' ### diff --git a/cluster/gce/windows/k8s-node-setup.psm1 b/cluster/gce/windows/k8s-node-setup.psm1 index a9cc0548b2a..4377c4e4833 100644 --- a/cluster/gce/windows/k8s-node-setup.psm1 +++ b/cluster/gce/windows/k8s-node-setup.psm1 @@ -57,8 +57,8 @@ $GCE_METADATA_SERVER = "169.254.169.254" # exist until an initial HNS network has been created on the Windows node - see # Add_InitialHnsNetwork(). $MGMT_ADAPTER_NAME = "vEthernet (Ethernet*" -$CRICTL_VERSION = 'v1.26.0' -$CRICTL_SHA256 = 'a86b7da799cda85dc75a9f6e30024cb0412c967689ae09a6e66d0ebeafa26d7c' +$CRICTL_VERSION = 'v1.26.1' +$CRICTL_SHA256 = 'c001596702788ed395a7094012170ba9e1ab21e938e30372e839882f821ee5f4' Import-Module -Force C:\common.psm1