microsoft / azurelinux

Linux OS for Azure 1P services and edge appliances
MIT License
4.08k stars 497 forks source link

Patch openssh to fix CVE-2023-28531 #9510

Closed sameluch closed 1 week ago

sameluch commented 1 week ago
Merge Checklist

All boxes should be checked before merging the PR (just tick any boxes which don't apply to this PR)


Summary

What does the PR accomplish, why was it needed? Add a patch for CVE-2023-28531 for openssh package

Change Log
Does this affect the toolchain?

NO

Links to CVEs
Test Methodology
PawelWMS commented 1 week ago

Overriding PR check and merging. The only failure is a known libguestfs ptest failure - no regressions.

CBL-Mariner-Bot commented 1 week ago

Auto cherry-pick results:

Auto cherry-pick pipeline run -> https://dev.azure.com/mariner-org/mariner/_build/results?buildId=594238&view=results