
主题: openEuler update_20231018版本发布公告 Dear all, 经社区Release SIG、QA SIG及 CICD SIG 评估,openEuler-20.03-LTS-SP1、openEuler-20.03-LTS-SP3、openEuler-22.03-LTS、openEuler-22.03-LTS-SP1及openEuler-22.03-LTS-SP2 update版本满足版本出口质量,现进行发布公示。 本公示分为七部分: 1、openEuler-20.03-LTS-SP1 Update 20231018发布情况及待修复缺陷 2、openEuler-20.03-LTS-SP3 Update 20231018发布情况及待修复缺陷 3、openEuler-22.03-LTS Update 20231018发布情况及待修复缺陷 4、openEuler-22.03-LTS-SP1 Update 20231018发布情况及待修复缺陷 5、openEuler-22.03-LTS-SP2 Update 20231018发布情况及待修复缺陷 6、openEuler 关键组件待修复CVE 清单 7、openEuler 社区指导文档及开放平台链接 本次update版本发布后,下一个版本里程碑点(预计在2023/10/27)提供 update_20231025 版本。 openEuler-20.03-LTS-SP1 Update 20231018 经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP1修复版本已知问题11个,已知漏洞15个。目前版本分支剩余待修复缺陷10个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库 openEuler-20.03-LTS-SP1 Update版本CVE修复 及Bugfix list公示链接: https://gitee.com/openeuler/release-management/issues/I88AEC?from=project-is... CVE修复: CVE 仓库 score #I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV> vim 8.2 #I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW> vim 7.8 #I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM> mariadb 7.5 #I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062> samba 6.5 #I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU> samba 6.5 #I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I> libxml2 6.5 #I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR> avahi 6.2 #I85CAQ:CVE-2023-39193<https://gitee.com/open_euler/dashboard?issue_id=I85CAQ> kernel 6 #I86MTP:CVE-2023-39189<https://gitee.com/open_euler/dashboard?issue_id=I86MTP> kernel 6 #I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W> kernel 5.5 #I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B> xerces-j2 5.3 #I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5> zlib 1 #I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R> curl 1 #I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X> curl 1 #I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR> ceph 1 Bugfix: issue 仓库 #I50XDF:编译失败<https://gitee.com/open_euler/dashboard?issue_id=I50XDF> libdb #I6EACA:【22.03 SP1 update20230208】【arm/x86】newt编译失败<https://gitee.com/open_euler/dashboard?issue_id=I6EACA> newt #I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR> libarchive #I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser@HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH> glib2 #I5UV2R: 回合上游社区补丁<https://gitee.com/open_euler/dashboard?issue_id=I5UV2R> libsolv #I7AW5E:logrotate配置prerotate执行失败时,已备份日志会被重命名<https://gitee.com/open_euler/dashboard?issue_id=I7AW5E> logrotate #I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错<https://gitee.com/open_euler/dashboard?issue_id=I7OXK8> kernel #I85XB3:[openEuler-1.0-LTS] 修复init_per_cpu()的空指针解引用<https://gitee.com/open_euler/dashboard?issue_id=I85XB3> kernel #I86GWG:针对某些盘NCQ场景通过D2H帧返回UNC场景优化<https://gitee.com/open_euler/dashboard?issue_id=I86GWG> kernel #I88UBD:【openEuler-1.0-LTS】The compilation fails due to the disabling of CONFIG_MICROCODE_AMD.<https://gitee.com/open_euler/dashboard?issue_id=I88UBD> kernel #I88WX3:syzkaller触发WARNING in armv8pmu_read_counter<https://gitee.com/open_euler/dashboard?issue_id=I88WX3> kernel openEuler-20.03-LTS-SP1版本编译构建信息查询链接: https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1 https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1:Epol openEuler-20.03-LTS-SP1 Update版本 发布源链接: https://repo.openeuler.org/openEuler-20.03-LTS-SP1/update/ https://repo.openeuler.org/openEuler-20.03-LTS-SP1/EPOL/update/ https://repo.openeuler.org/openEuler-20.03-LTS-SP1/docker_img/update/ openEuler CVE 及安全公告公示链接: https://www.openeuler.org/zh/security/cve/ https://www.openeuler.org/zh/security/safety-bulletin/ https://repo.openeuler.org/security/data/cvrf/ openEuler-20.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高): 里程碑 任务ID 任务标题 优先级 sig组 关联仓库 任务路径 openEuler 20.03LTS SP1 update2103 I3E5C1 【20.03-SP1】【arm/x86】服务启动失败 主要 regression-failed src-openEuler/hadoop https://gitee.com/open_euler/dashboard?issue_id=I3E5C1 openEuler 20.03LTS SP1 update210901 I48GIM 【20.03LTS SP1 update 210901】ovirt-cockpit-sso.service服务启动失败 主要 sig-oVirt src-openEuler/ovirt-cockpit-sso https://gitee.com/open_euler/dashboard?issue_id=I48GIM openEuler 20.03-LTS-SP1 I4J0OY 【20.03 SP1】【arm/x86】安装好libdap后,getdap4命令的-i和-k参数使用异常 主要 sig/sig-recycle src-openEuler/libdap https://gitee.com/open_euler/dashboard?issue_id=I4J0OY openEuler 20.03-LTS-SP1 I4JMG4 【20.03 SP1】【arm/x86】robotframework包的三个命令:libdoc、rebot、robot执行--help/-h/-?/--version,查看帮助信息和版本信息,返回值为251 主要 sig/sig-ROS src-openEuler/python-robotframework https://gitee.com/open_euler/dashboard?issue_id=I4JMG4 openEuler 20.03-LTS-SP1 I5DLX7 [20.03 22.03] 管理员指南操作文档mysql服务搭建指导文档有误 主要 sig/doc openEuler/docs https://gitee.com/open_euler/dashboard?issue_id=I5DLX7 openEuler 20.03-LTS-SP1 I6VFAE [20.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败 次要 sig/DB src-openEuler/mariadb https://gitee.com/open_euler/dashboard?issue_id=I6VFAE openEuler-20.03-LTS-SP1 I3QGU7 系统不支持GB18030 无优先级 sig/TC openEuler/community https://gitee.com/open_euler/dashboard?issue_id=I3QGU7 openEuler 20.03LTS SP1 update210926 I4CMSV 【20.03-LTS-SP1】【arm/x86】搭建Kubernetes 集群缺少包etcd 无优先级 sig/TC openEuler/community https://gitee.com/open_euler/dashboard?issue_id=I4CMSV openEuler 20.03LTS SP1 update220111 I4QV6N 【openEuler-20.03-LTS-SP1】flink命令执行失败 无优先级 sig/sig-ai-bigdata src-openEuler/flink https://gitee.com/open_euler/dashboard?issue_id=I4QV6N openEuler-20.03-LTS-SP1-dailybuild I5Y99T mate-desktop install problem in openEuler:20:03:LTS:SP1 无优先级 sig/sig-mate-desktop src-openEuler/mate-desktop https://gitee.com/open_euler/dashboard?issue_id=I5Y99T openEuler-20.03-LTS-SP3 Update 20231018 经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP3修复版本已知问11个,已知漏洞15个。目前版本分支剩余待修复缺陷 6个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库 openEuler-20.03-LTS-SP3 Update版本CVE修复 及Bugfix list公示链接: https://gitee.com/openeuler/release-management/issues/I88AEE?from=project-is... CVE修复: CVE 仓库 score #I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV> vim 8.2 #I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW> vim 7.8 #I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM> mariadb 7.5 #I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062> samba 6.5 #I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU> samba 6.5 #I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I> libxml2 6.5 #I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR> avahi 6.2 #I85CAQ:CVE-2023-39193<https://gitee.com/open_euler/dashboard?issue_id=I85CAQ> kernel 6 #I86MTP:CVE-2023-39189<https://gitee.com/open_euler/dashboard?issue_id=I86MTP> kernel 6 #I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W> kernel 5.5 #I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B> xerces-j2 5.3 #I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R> curl 1 #I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X> curl 1 #I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR> ceph 1 #I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5> zlib 1 Bugfix: issue 仓库 #I6EACA:【22.03 SP1 update20230208】【arm/x86】newt编译失败<https://gitee.com/open_euler/dashboard?issue_id=I6EACA> newt #I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR> libarchive #I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser@HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH> glib2 #I5UV2R: 回合上游社区补丁<https://gitee.com/open_euler/dashboard?issue_id=I5UV2R> libsolv #I7AW5E:logrotate配置prerotate执行失败时,已备份日志会被重命名<https://gitee.com/open_euler/dashboard?issue_id=I7AW5E> logrotate #I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错<https://gitee.com/open_euler/dashboard?issue_id=I7OXK8> kernel #I85XB3:[openEuler-1.0-LTS] 修复init_per_cpu()的空指针解引用<https://gitee.com/open_euler/dashboard?issue_id=I85XB3> kernel #I86GWG:针对某些盘NCQ场景通过D2H帧返回UNC场景优化<https://gitee.com/open_euler/dashboard?issue_id=I86GWG> kernel #I88UBD:【openEuler-1.0-LTS】The compilation fails due to the disabling of CONFIG_MICROCODE_AMD.<https://gitee.com/open_euler/dashboard?issue_id=I88UBD> kernel #I88WX3:syzkaller触发WARNING in armv8pmu_read_counter<https://gitee.com/open_euler/dashboard?issue_id=I88WX3> kernel openEuler-20.03-LTS-SP3版本编译构建信息查询链接: https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3 https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3:Epol openEuler-20.03-LTS-SP3 Update版本 发布源链接: https://repo.openeuler.org/openEuler-20.03-LTS-SP3/update/ https://repo.openeuler.org/openEuler-20.03-LTS-SP3/EPOL/update/main/ https://repo.openeuler.org/openEuler-20.03-LTS-SP3/docker_img/update/ openEuler CVE及安全公告公示链接: https://www.openeuler.org/zh/security/cve/ https://www.openeuler.org/zh/security/safety-bulletin/ https://repo.openeuler.org/security/data/cvrf/ openEuler-20.03-LTS-SP3 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高): 里程碑 任务ID 任务标题 优先级 sig组 关联仓库 任务路径 openEuler 20.03-LTS-SP3 I5KXUY 【20.03 LTS SP3 update 20220803】【arm/x86】ovirt-cockpit-sso.service服务启动失败 主要 sig/oVirt src-openEuler/ovirt-cockpit-sso https://gitee.com/open_euler/dashboard?issue_id=I5KXUY openEuler-20.03-LTS-SP3 I5KY4S 【20.03 LTS SP3 update 20220803】【arm/x86】vdsmd.service服务启动失败,导致mom-vdsm.service服务无法启动成功 主要 sig/oVirt src-openEuler/vdsm https://gitee.com/open_euler/dashboard?issue_id=I5KY4S openEuler-20.03-LTS-SP3 I6VFMI [20.03 SP3] [x86/arm] mariadb授权给远程用户,远程连接服务失败 次要 sig/DB src-openEuler/mariadb https://gitee.com/open_euler/dashboard?issue_id=I6VFMI openEuler-20.03-LTS-SP3 I72HWV 【20.03-lts-sp3】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败 次要 sig/Base-service src-openEuler/php https://gitee.com/open_euler/dashboard?issue_id=I72HWV openEuler-20.03-LTS-SP3 I7QP67 [20.03-LTS-SP3]openssh自编译失败,提示缺少bc命令 次要 sig/Base-service src-openEuler/openEuler-release https://gitee.com/open_euler/dashboard?issue_id=I7QP67 openEuler 20.03LTS SP3 update220111 I4QV7S 【openEuler-20.03-LTS-SP3】flink run 命令执行失败 无优先级 sig/sig-ai-bigdata src-openEuler/flink https://gitee.com/open_euler/dashboard?issue_id=I4QV7S openEuler-22.03-LTS Update 20231018 经各SIG及社区开发者贡献,本周openEuler-22.03-LTS修复版本已知问题10个,已知漏洞15个。目前版本分支剩余待修复缺陷4个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库 openEuler-22.03-LTS Update版本CVE修复 及Bugfix list公示链接: https://gitee.com/openeuler/release-management/issues/I88AEF?from=project-is... CVE修复: CVE 仓库 score #I86NLQ:CVE-2023-43641<https://gitee.com/open_euler/dashboard?issue_id=I86NLQ> libcue 8.8 #I837XU:CVE-2023-4504<https://gitee.com/open_euler/dashboard?issue_id=I837XU> cups 8.8 #I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV> vim 8.2 #I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW> vim 7.8 #I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM> mariadb 7.5 #I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I> libxml2 6.5 #I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062> samba 6.5 #I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU> samba 6.5 #I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR> avahi 6.2 #I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W> kernel 5.5 #I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B> xerces-j2 5.3 #I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R> curl 1 #I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X> curl 1 #I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5> zlib 1 #I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR> ceph 1 Bugfix: issue 仓库 #I7Y90Y:回合上游社区补丁,补丁数量:3<https://gitee.com/open_euler/dashboard?issue_id=I7Y90Y> python3 #I7X6YS:openldap社区补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7X6YS> openldap #I7E9D3:libtirpc解耦无效依赖man-db<https://gitee.com/open_euler/dashboard?issue_id=I7E9D3> libtirpc #I6EACA:【22.03 SP1 update20230208】【arm/x86】newt编译失败<https://gitee.com/open_euler/dashboard?issue_id=I6EACA> newt #I5WJOD:fix URL<https://gitee.com/open_euler/dashboard?issue_id=I5WJOD> libgpg-error #I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR> libarchive #I5UOYG:secbinarycheck扫描安全配置结果,请分析备案<https://gitee.com/open_euler/dashboard?issue_id=I5UOYG> libpng #I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser@HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH> glib2 #I7STNB:libsolv补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7STNB> libsolv #I82QPR:【OLK-5.10/openEuler-1.0-LTS】softlockup in rcu_momentary_dyntick_idle<https://gitee.com/open_euler/dashboard?issue_id=I82QPR> kernel openEuler-22.03-LTS版本编译构建信息查询链接: https://build.openeuler.org/project/show/openEuler:22.03:LTS https://build.openeuler.org/project/show/openEuler:22.03:LTS:Epol openEuler-22.03-LTS Update版本 发布源链接: https://repo.openeuler.org/openEuler-22.03-LTS/update/ https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/main/ https://repo.openeuler.org/openEuler-22.03-LTS/docker_img/update/ https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Ope... https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Ope... https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/obs... openEuler CVE 及 安全公告公示链接: https://www.openeuler.org/zh/security/cve/ https://www.openeuler.org/zh/security/safety-bulletin/ https://repo.openeuler.org/security/data/cvrf/ openEuler-22.03-LTS Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高): 里程碑 任务ID 任务标题 优先级 sig组 关联仓库 任务路径 openEuler-22.03-LTS update20230726 I7ORCE 【22.03 LTS update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败; cephadm卸载有异常打印 主要 sig/sig-SDS src-openEuler/ceph https://gitee.com/open_euler/dashboard?issue_id=I7ORCE openEuler-22.03-LTS I596H5 openEuler官网中安全加固指南模块—>加固指导—>系统服务—>ssh加固项说明:加固建议中多添加了@符号 次要 sig/doc openEuler/docs https://gitee.com/open_euler/dashboard?issue_id=I596H5 openEuler-22.03-LTS I6VFRX [22.03-LTS][x86/arm]mariadb授权给远程用户,远程连接服务失败 次要 sig/DB src-openEuler/mariadb https://gitee.com/open_euler/dashboard?issue_id=I6VFRX openEuler-22.03-LTS I72N5G 【22.03-lts】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败 次要 sig/Base-service src-openEuler/php https://gitee.com/open_euler/dashboard?issue_id=I72N5G openEuler-22.03-LTS-SP1 Update 20231018 经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP1修复版本已知问题9个,已知漏洞16个。目前版本分支剩余待修复缺陷10个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库 openEuler-22.03-LTS SP1 Update版本CVE修复 及Bugfix list公示链接: https://gitee.com/openeuler/release-management/issues/I88AEA?from=project-is... CVE修复: CVE 仓库 score #I86NLQ:CVE-2023-43641<https://gitee.com/open_euler/dashboard?issue_id=I86NLQ> libcue 8.8 #I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV> vim 8.2 #I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW> vim 7.8 #I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM> mariadb 7.5 #I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I> libxml2 6.5 #I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062> samba 6.5 #I8706V:CVE-2023-42670<https://gitee.com/open_euler/dashboard?issue_id=I8706V> samba 6.5 #I87CXT:CVE-2023-3961<https://gitee.com/open_euler/dashboard?issue_id=I87CXT> samba 6.5 #I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU> samba 6.5 #I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR> avahi 6.2 #I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W> kernel 5.5 #I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B> xerces-j2 5.3 #I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R> curl 1 #I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X> curl 1 #I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR> ceph 1 #I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5> zlib 1 Bugfix: issue 仓库 #I7Y90Y:回合上游社区补丁,补丁数量:3<https://gitee.com/open_euler/dashboard?issue_id=I7Y90Y> python3 #I7I4PR:空链接问题排查:openEuler-20.03-LTS、openEuler-20.03-LTS-SP1、openEuler-22.03-LTS升级后,查询环境,存在空连接。<https://gitee.com/open_euler/dashboard?issue_id=I7I4PR> openldap #I7E9D3:libtirpc解耦无效依赖man-db<https://gitee.com/open_euler/dashboard?issue_id=I7E9D3> libtirpc #I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR> libarchive #I7NZX0: 例行分析libdnf补丁,需要回合补丁<https://gitee.com/open_euler/dashboard?issue_id=I7NZX0> libdnf #I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser@HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH> glib2 #I7STNB:libsolv补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7STNB> libsolv #I7AZ85:使用LTS补丁替换自研修复方案cgroup: Do not corrupt task iteration when rebinding subsystem<https://gitee.com/open_euler/dashboard?issue_id=I7AZ85> kernel #I82QPR:【OLK-5.10/openEuler-1.0-LTS】softlockup in rcu_momentary_dyntick_idle<https://gitee.com/open_euler/dashboard?issue_id=I82QPR> kernel openEuler-22.03-LTS SP1版本编译构建信息查询链接: https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1 https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1:Epo... openEuler-22.03-LTS SP1 Update版本 发布源链接: https://repo.openeuler.org/openEuler-22.03-LTS-SP1/update/ https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/main/ https://repo.openeuler.org/openEuler-22.03-LTS-SP1/docker_img/update/ https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_version... https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_version... https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_version... openEuler CVE 及 安全公告公示链接: https://www.openeuler.org/zh/security/cve/ https://www.openeuler.org/zh/security/safety-bulletin/ https://repo.openeuler.org/security/data/cvrf/ openEuler-22.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高): 里程碑 任务ID 任务标题 优先级 sig组 关联仓库 任务路径 openEuler 22.03-SP1 I6B4V1 【22.03 SP1 update 20230118】【arm】libhdfs在arm架构降级失败,x86正常 主要 sig/bigdata src-openEuler/hadoop https://gitee.com/open_euler/dashboard?issue_id=I6B4V1 openEuler-22.03-LTS-SP1 I7LW30 【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in wide_int_to_tree_1, at tree.c:1575) 主要 sig/Compiler openEuler/gcc https://gitee.com/open_euler/dashboard?issue_id=I7LW30 openEuler-22.03-LTS-SP1 I7LWCW 【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:internal compiler error: Segmentation fault 主要 sig/Compiler openEuler/gcc https://gitee.com/open_euler/dashboard?issue_id=I7LWCW openEuler-22.03-LTS-SP1 I7LWK7 【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4394) 主要 sig/Compiler openEuler/gcc https://gitee.com/open_euler/dashboard?issue_id=I7LWK7 openEuler-22.03-LTS-SP1 I7LWO1 【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during RTL pass: expand(in convert_move, at expr.c:219) 主要 sig/Compiler openEuler/gcc https://gitee.com/open_euler/dashboard?issue_id=I7LWO1 openEuler-22.03-LTS-SP1 I7LX07 【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4379) 主要 sig/Compiler openEuler/gcc https://gitee.com/open_euler/dashboard?issue_id=I7LX07 openEuler-22.03-LTS-SP1 update20230726 I7OR2I 【22.03 LTS SP1 update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败 主要 sig/sig-SDS src-openEuler/ceph https://gitee.com/open_euler/dashboard?issue_id=I7OR2I openEuler-22.03-LTS-SP1 I6VFV6 [22.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败 次要 sig/DB src-openEuler/mariadb https://gitee.com/open_euler/dashboard?issue_id=I6VFV6 openEuler-22.03-LTS-SP1 I73CKF 【22.03-lts-sp1】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败 次要 sig/Base-service src-openEuler/php https://gitee.com/open_euler/dashboard?issue_id=I73CKF openEuler-20.03-LTS-SP1-dailybuild I5Y99T mate-desktop install problem in openEuler:20:03:LTS:SP1 无优先级 sig/sig-mate-desktop src-openEuler/mate-desktop https://gitee.com/open_euler/dashboard?issue_id=I5Y99T openEuler-22.03-LTS-SP2 Update 20231018 经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP2修复版本已知问题5个,已知漏洞16个。目前版本分支剩余待修复缺陷2个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库 openEuler-22.03-LTS-SP2 Update版本CVE修复 及Bugfix list公示链接: https://gitee.com/openeuler/release-management/issues/I88AE9?from=project-is... CVE修复: CVE 仓库 score #I86NLQ:CVE-2023-43641<https://gitee.com/open_euler/dashboard?issue_id=I86NLQ> libcue 8.8 #I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV> vim 8.2 #I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW> vim 7.8 #I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM> mariadb 7.5 #I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I> libxml2 6.5 #I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062> samba 6.5 #I8706V:CVE-2023-42670<https://gitee.com/open_euler/dashboard?issue_id=I8706V> samba 6.5 #I87CXT:CVE-2023-3961<https://gitee.com/open_euler/dashboard?issue_id=I87CXT> samba 6.5 #I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU> samba 6.5 #I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR> avahi 6.2 #I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W> kernel 5.5 #I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B> xerces-j2 5.3 #I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R> curl 1 #I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X> curl 1 #I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR> ceph 1 #I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5> zlib 1 Bugfix: issue 仓库 #I7E9D3:libtirpc解耦无效依赖man-db<https://gitee.com/open_euler/dashboard?issue_id=I7E9D3> libtirpc #I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser@HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH> glib2 #I7STNB:libsolv补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7STNB> libsolv #I7D878:[OLK-5.10] ext4: delete redundant uptodate check for buffer<https://gitee.com/open_euler/dashboard?issue_id=I7D878> kernel #I82QPR:【OLK-5.10/openEuler-1.0-LTS】softlockup in rcu_momentary_dyntick_idle<https://gitee.com/open_euler/dashboard?issue_id=I82QPR> kernel openEuler-22.03-LTS SP2版本编译构建信息查询链接: https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2 https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2:Epo... openEuler-22.03-LTS SP2 Update版本 发布源链接: https://repo.openeuler.org/openEuler-22.03-LTS-SP2/update/ https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/main/ https://repo.openeuler.org/openEuler-22.03-LTS-SP2/hotpatch_update/ https://repo.openeuler.org/openEuler-22.03-LTS-SP2/docker_img/update/ https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_version... https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_version... openEuler CVE 及 安全公告公示链接: https://www.openeuler.org/zh/security/cve/ https://www.openeuler.org/zh/security/safety-bulletin/ https://repo.openeuler.org/security/data/cvrf/ https://repo.openeuler.org/security/data/hotpatch_cvrf/ openEuler-22.03-LTS-SP2 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高): 里程碑 任务ID 任务标题 优先级 sig组 关联仓库 任务路径 openEuler-22.03-LTS-SP2-round-2 I795G3 【22.03-LTS-SP2 round2】本次转测源中出现多个版本的containers-common 主要 sig/sig-CloudNative src-openEuler/skopeo https://gitee.com/open_euler/dashboard?issue_id=I795G3 openEuler-22.03-LTS-SP2-SEC I7AFIR 【22.03-LTS-SP2 round2】【x86/arm】libkae-1.2.10-6.oe2203sp2安全编译选项Rpath/Runpath不满足 主要 sig-AccLib src-openEuler/libkae https://gitee.com/open_euler/dashboard?issue_id=I7AFIR 社区待修复漏洞: openEuler社区根据漏洞严重等级采取差异化的修复策略,请各个SIG 关注涉及CVE组件的修复情况。 严重等级(Severity Rating) 漏洞修复时长 致命(Critical) 7天 高(High) 14天 中(Medium) 30天 低(Low) 30天 可参考社区安全委员会漏洞:https://gitee.com/openeuler/security-committee/wikis/%E7%A4%BE%E5%8C%BA%E6%B... 近14天将超期CVE(10.21日数据): 漏洞编号 Issue ID 剩余天数 CVSS评分 软件包 责任SIG CVE-2023-44981 I896D4 6.21 9.1 zookeeper sig-bigdata CVE-2023-40791 I88DAN 6.21 9.1 kernel Kernel CVE-2023-22102 I89F9G 13.21 8.3 mysql Others CVE-2023-45898 I88DBD 13.21 7.8 kernel Kernel CVE-2023-5557 I87QB3 13.21 7.7 tracker-miners Base-service CVE-2023-44487 I89672 12.2 7.5 nghttp2 Networking CVE-2023-5632 I89456 12.2 7.5 mosquitto Application CVE-2023-45862 I885FJ 13.21 7.5 kernel Kernel CVE-2023-38545 I86P7R 13.78 7.5 curl Networking CVE-2023-4574 I7WZ14 9.2 6.5 firefox Application CVE-2023-4573 I7WZ06 9.2 6.5 firefox Application CVE-2023-3592 I7Z2PQ 13.2 5.8 mosquitto Application CVE-2023-43114 I829D9 2.2 5.5 qt Runtime CVE-2023-43898 I85EOY 13.29 5.5 stb UKUI CVE-2022-3466 I5VEVL 0.62 5.3 cri-o sig-CloudNative CVE-2023-0809 I856A0 13.2 5.3 mosquitto Application CVE-2023-1625 I6Q3J1 6.2 5.0 openstack-heat sig-openstack CVE-2023-4581 I7WYZD 9.2 4.3 firefox Application CVE-2023-40660 I84XBX 6.96 0.0 opensc Base-service CVE-2023-42118 I85795 9.1 0.0 exim Application CVE-2023-42117 I8579C 9.11 0.0 exim Application CVE-2023-42116 I8579B 9.11 0.0 exim Application CVE-2023-42115 I8579A 9.11 0.0 exim Application CVE-2023-42119 I85799 9.11 0.0 exim Application CVE-2023-42114 I85797 9.11 0.0 exim Application openEuler 社区指导文档及开放平台链接: openEuler 版本分支维护规范: https://gitee.com/openeuler/release-management/blob/master/openEuler%E7%89%8... openEuler release-management 版本分支PR指导: https://gitee.com/openeuler/release-management/blob/master/openEuler%E5%BC%8... 社区QA 版本测试提单规范 https://gitee.com/openeuler/QA/blob/master/%E7%A4%BE%E5%8C%BA%E7%89%88%E6%9C... 社区QA 测试平台 radiates https://radiatest.openeuler.org<https://radiatest.openeuler.org/>