Skip to content

Release 12.4.28#34813

Merged
camscale merged 1 commit intobranch/v12from
release/12.4.28
Nov 21, 2023
Merged

Release 12.4.28#34813
camscale merged 1 commit intobranch/v12from
release/12.4.28

Conversation

@camscale
Copy link
Copy Markdown
Contributor

This release includes the changes in 12.4.24 and 12.4.25

as these versions did not make it through to release due to
build/release issues.

Release 12.4.26 and 12.4.27 was abandoned due to build errors requiring
a new change. Some additional commits have been added to this release.

12.4.27 (11/16/23)

Security Fixes

Third-party security fixes

  • Bump go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc to 0.46.1 #34806
    • otelgrpc DoS vulnerability due to unbound cardinality metrics: CVE-2023-47108

Other Fixes & Improvements

  • Increased the maximum width of the console tabs in the web UI. #34649
  • Prevented .tsh/environment values from overriding prior set values. #34624
  • Fixed incorrect permissions when opening X11 listener. #34615
  • Fixed access requests to respect explicit deny rules. #34599
  • Improved the error message when attempting to enroll a hardware key that cannot support passwordless. #34591

Ignored in changelog

Docs

  • [v12] Clarify the relationship between Kubernetes docs #34629
  • [v12] Link to the Usage/Billing page in the FAQ #34585

e updates

Minor/trivial user-visible changes

Testing change

No changelog

  • [v12] Update e ref #34809
  • [v12] Improve utils.FatalError error formatting #34776
  • Release 12.4.27 #34691
  • [v12] Deflake HTTP_PROXY tests #34360
  • [v12] Fixed tag builds using commit instead of tag ref #34677
  • Release 12.4.26 #34647
  • [v12] Added release server publishing retry #34644
  • [v12] chore: Bump Buf to v1.28.0 #34576
  • [branch/v12] Bumped e ref #34552
  • [v12] Bump go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc from 0.45.0 to 0.46.0 in /examples #34534
  • Release 12.4.25 #34439
  • [v12] oci: Parameterize Debian OCI Dockerfile for multiarch #34186

@camscale camscale added the no-changelog Indicates that a PR does not require a changelog entry label Nov 21, 2023
@camscale camscale added this pull request to the merge queue Nov 21, 2023
Merged via the queue into branch/v12 with commit 6ca2c1a Nov 21, 2023
@camscale camscale deleted the release/12.4.28 branch November 21, 2023 02:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport helm no-changelog Indicates that a PR does not require a changelog entry size/sm

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants