Back Linuxsecurity openSUSE: Flannel Important Update for CVE-2019-14697 2025:0474
This update for flannel fixes the following issues: - Update to version 0.27.4: * Removed PodSecurityPolicy manifest creation * Fix interface IP address detection in dual-stack mode * Fix: recreate VXLAN device (flannel.*) when external interface is deleted and re-added (#2247) * golangci-lint: fix iptables_test * firewall: add option to disable fully-random mode for MASQUERADE * Bump the tencent group with 2 updates * Bump github.com/coreos/go-systemd/v22 in the other-go-modules group * Bump golang.org/x/sys in the other-go-modules group * Bump the etcd group with 4 updates * Bump etcd version in tests * Stop using deprecated cache.NewIndexerInformer function * Bump k8s test version * Bump k8s deps to v0.31.11 * Bump the other-go-modules group with 2 updates * helm chart: add nodeSelector in the helm chart * Updated Alpine image * Added flag to enable blackhole route locally for Canal
Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2025-474=1
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Backports SLE-15-SP7:
zypper in -t patch openSUSE-2025-474=1
- openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): flannel-0.27.4-bp157.2.3.1 - openSUSE Backports SLE-15-SP7 (noarch): flannel-k8s-yaml-0.27.4-bp157.2.3.1
- openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64):
flannel-0.27.4-bp157.2.3.1
- openSUSE Backports SLE-15-SP7 (noarch):
flannel-k8s-yaml-0.27.4-bp157.2.3.1
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
