Skip to content

Commit

Permalink
[NET-10290] Update ENVOY_VERSIONS (#21524)
Browse files Browse the repository at this point in the history
* [NET-10290] Update ENVOY_VERSIONS

* Add changelog entry

* Link to CVE for more info in changelog entry

Co-authored-by: Deniz Onur Duzgun <[email protected]>

---------

Co-authored-by: Deniz Onur Duzgun <[email protected]>
  • Loading branch information
nathancoleman and dduzgun-security committed Jul 8, 2024
1 parent dce6241 commit 8d2370d
Show file tree
Hide file tree
Showing 2 changed files with 6 additions and 3 deletions.
3 changes: 3 additions & 0 deletions .changelog/21524.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Upgrade envoy module dependencies to version 1.27.7, 1.28.5 and 1.29.7 or higher to resolve [CVE-2024-39305](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-39305)
```
6 changes: 3 additions & 3 deletions envoyextensions/xdscommon/ENVOY_VERSIONS
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@
#
# See https://www.consul.io/docs/connect/proxies/envoy#supported-versions for more information on Consul's Envoy
# version support.
1.29.5
1.28.4
1.27.6
1.29.7
1.28.5
1.27.7
1.26.8

0 comments on commit 8d2370d

Please sign in to comment.