Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

emissary: add pending-upstream-fix for CGA-5ggg-jvf3-xr5v #13537

Merged
merged 1 commit into from
Feb 28, 2025

Conversation

eslerm
Copy link
Contributor

@eslerm eslerm commented Feb 27, 2025

Emissary v3.9.1 relies on Kubernetes v1.28.x. The version of Kubernetes (v1.29.14) that remediates CVE-2025-0426 is incompatible with Emissary v3.9.1. Upstream Emissary bumped go from v1.21.10 to v1.22.4 as well as bumped Kubernetes to v1.30.1 in commit 1c96a9df0 ("update go"), which is first tagged in Emissary v3.10.0-rc.0. The most current HEAD of Emissary uses Kubernetes v1.32.1. Upstream maintenance support of Kubernete's v1.28 ended on October 28th 2024.

@jamie-albert jamie-albert added this pull request to the merge queue Feb 28, 2025
Merged via the queue into wolfi-dev:main with commit 7f1d86f Feb 28, 2025
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants