- Issued:
- 2016-12-06
- Updated:
- 2016-12-06
RHBA-2016:2899 - Bug Fix Advisory
Synopsis
Red Hat Enterprise Linux Atomic openscap Container Image Update
Type/Severity
Bug Fix Advisory
Topic
An updated Red Hat Enterprise Linux Atomic openscap container image is now available.
Description
The Red Hat Enterprise Linux Atomic openscap container image contains the OpenSCAP-daemon, a service that performs SCAP scans of bare-metal machines, virtual machines and containers. Running the openscap container enables container vulnerability scanning with the "atomic scan" command.
Updated packages:
RHBA-2016:2858 bash-4.2.46-21.el7_3
RHSA-2016:2824 expat-2.1.0-10.el7_3
RHBA-2016:2861 glibc-2.17-157.el7_3.1
RHBA-2016:2861 glibc-common-2.17-157.el7_3.1
RHBA-2016:2863 krb5-libs-1.14.1-27.el7_3
RHSA-2016:2674 libgcrypt-1.5.3-13.el7_3.1
RHSA-2016:2779 nss-3.21.3-2.el7_3
RHSA-2016:2779 nss-sysinit-3.21.3-2.el7_3
RHSA-2016:2779 nss-tools-3.21.3-2.el7_3
RHSA-2016:2779 nss-util-3.21.3-1.1.el7_3
RHBA-2016:2698 systemd-219-30.el7_3.6
RHBA-2016:2698 systemd-libs-219-30.el7_3.6
RHEA-2016:2832 tzdata-2016j-1.el7
All users who require the Red Hat Enterprise Linux Atomic openscap container are advised to update this container image.
Solution
The Red Hat Enterprise Linux container image provided by this update can be
downloaded from the Red Hat Container Registry at registry.access.redhat.com
using the "docker pull" command. Dockerfiles and scripts should be amended
either to refer to this new image specifically, or to the latest image
generally.
Affected Products
- Red Hat Enterprise Linux Server 7 x86_64
Fixes
- BZ - 1392021 - openscap-docker tracker bug for 7.3.1
CVEs
(none)
References
- http://access.redhat.com/errata/RHBA-2016:2858.html
- http://access.redhat.com/errata/RHSA-2016:2824.html
- http://access.redhat.com/errata/RHBA-2016:2861.html
- http://access.redhat.com/errata/RHBA-2016:2863.html
- http://access.redhat.com/errata/RHSA-2016:2674.html
- http://access.redhat.com/errata/RHSA-2016:2779.html
- http://access.redhat.com/errata/RHBA-2016:2698.html
- http://access.redhat.com/errata/RHEA-2016:2832.html
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.