Skip to content

teleport 14.0.3#150662

Merged
BrewTestBot merged 2 commits intoHomebrew:masterfrom
chenrui333:bump-teleport-14.0.3
Oct 12, 2023
Merged

teleport 14.0.3#150662
BrewTestBot merged 2 commits intoHomebrew:masterfrom
chenrui333:bump-teleport-14.0.3

Conversation

@chenrui333
Copy link
Copy Markdown
Member

Created by brew bump


Created with brew bump-formula-pr.

Details

release notes
## Description

This release of Teleport contains one security fix, and various other updates.

Security Fixes

[Critical] Privilege escalation through RecursiveChown

When using automatic Linux user creation, an attacker could exploit a race condition in the user creation functionality to chown arbitrary files on the system.

Users who aren't using automatic Linux host user creation aren’t affected by this vulnerability.

#33248

Other Fixes

  • Fixed spurious timeouts in Database Access Sessions #32720
  • Azure VM auto-discovery can now find VMs with multiple managed identities #32800
  • Fixed improperly set Kubernetes impersonation headers #32848
  • tsh puttyconfig now uses Validity format for WinSCP compatibility #32856
  • Teleport client now uses gRPC when connecting to the root cluster #32662
  • Teleport client now uses gRPC when creating tracing client #32663
  • Fixed panic on tsh device enroll --current-device #32756
  • The Teleport etcd backend will now start if some nodes are unreachable #32779
  • Fixed certificate verification issues when using kubectl exec #32768
  • Added Discover flow for enrolling EC2 Instances with EICE #32760
  • Added connection information to multiplexer logs #32738
  • Fixed issue causing keys to be incorrectly removed in tsh and Teleport Connect on Windows #32963
  • Improved Unified Resource Cache performance #33027
  • Adds Audit Review recurrence presets #32960
  • Fixed multiple discovery install attempts on Azure & GCP VMs #32569
  • Fixed a corner case of privilege tokens where MFA devices disabled by cluster settings were still counted against the user #32430
  • Fixed Access List caching & eventing issues #32649
  • Fixed user session tracking across trusted clusters #32967
  • Added cost optimized pagination search for athena #33007
  • Teleport now reports initial command to session moderators #33112
  • OneOff install script now installs enterprise Teleport when generated by an enterprise cluster #33148
  • Fixed issue when playing back a session recorded on a leaf cluster #33102
  • Fixed self-signed certificate issue on macOS #33156
  • Discovery EC2 instance listing now shows instance name #33179
  • Fixed HTTP connection hijack issue when using tsh proxy kube #33172
  • Improved error messaging in tsh kube credentials when root cluster roles don't allow Kube access #33210

Download

Download the current and previous releases of Teleport at https://goteleport.com/download.

@github-actions github-actions Bot added go Go use is a significant feature of the PR or issue nodejs Node or npm use is a significant feature of the PR or issue bump-formula-pr PR was created using `brew bump-formula-pr` labels Oct 12, 2023
@github-actions
Copy link
Copy Markdown
Contributor

🤖 An automated task has requested bottles to be published to this PR.

@github-actions github-actions Bot added the CI-published-bottle-commits The commits for the built bottles have been pushed to the PR branch. label Oct 12, 2023
@BrewTestBot BrewTestBot enabled auto-merge October 12, 2023 16:49
@BrewTestBot BrewTestBot added this pull request to the merge queue Oct 12, 2023
Merged via the queue into Homebrew:master with commit e0caa2f Oct 12, 2023
@github-actions github-actions Bot added the outdated PR was locked due to age label Nov 23, 2023
@github-actions github-actions Bot locked as resolved and limited conversation to collaborators Nov 23, 2023
@chenrui333 chenrui333 deleted the bump-teleport-14.0.3 branch January 22, 2024 18:00
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

bump-formula-pr PR was created using `brew bump-formula-pr` CI-published-bottle-commits The commits for the built bottles have been pushed to the PR branch. go Go use is a significant feature of the PR or issue nodejs Node or npm use is a significant feature of the PR or issue outdated PR was locked due to age

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants