Back to index
Download the installer for your operating system or run
oc adm release extract --tools quay.io/openshift-release-dev/ocp-release:4.17.0-rc.5-aarch64
Team Approvals:
Tests:
Upgrades from:
Untested upgrades:
4.16.10,
4.16.11,
4.16.12,
4.16.13,
4.16.8,
4.16.9,
4.17.0-ec.0,
4.17.0-ec.1,
4.17.0-ec.2,
4.17.0-ec.3,
4.17.0-rc.0,
4.17.0-rc.1,
4.17.0-rc.2,
4.17.0-rc.4Upgrades to:
Loading changelog, this may take a while ...
Created: 2024-09-20 03:40:13 +0000 UTC
Image Digest: sha256:76406ab52d3885fa754543e6fa21bb7c23fdaa3d33f7442e7844536fb46629d3
Components
- Kubectl 1.30.2
- Kubernetes 1.30.4
- Kubernetes Tests 1.30.0
- Red Hat Enterprise Linux CoreOS 417.94.202409120353-0
- OCPBUGS-41225: Prevent Build Inputs “Zip-Slip” #2
- OCPBUGS-33215: Bumps openshift/api & related dependencies #394
- OCPBUGS-25495: Upgrade s2i and buildah #392
- OCPBUGS-30672: bump go-jose to fix CVE-2024-28176 #386
- OCPBUGS-31930: Updating openshift-enterprise-builder-container image to be consistent with ART for 4.16 #385
- OCPBUGS-24746: Updating openshift-enterprise-builder-container image to be consistent with ART for 4.16 #382
- BUILD-854: Add adambkaplan as approver #380
- OCPBUGS-28661: Replace ‘coreydaley’ with ‘sayan-biswas’ #377
- OCPBUGS-23128: bump github.com/containers/buildah to fix transient mounting in chroot isolation #358
- OCPBUGS-22497: Add -p flag to cp command to preserve timestamps #369
- OCPBUGS-21969: Mitigate CVE-2023-39325 #361
- OCPBUGS-20407: drop the Overlay setting from transient mounts #359
- OCPBUGS-18855: Updating openshift-enterprise-builder images to be consistent with ART #357
- BUILD-432: mount secrets as “overlay” mounts #349
- OCPBUGS-16070: Updating Kubernetes and other associated dependencies #356
- OCPBUGS-15497: Add the git-lfs package #350
- OCPBUGS-14798: Adds reference to contributing.md #346
- OCPBUGS-14484: Kubernetes 0.27 #347
- OCPBUGS-1973: pass CPU limits for Docker strategy builds #341
- Updating openshift-enterprise-builder images to be consistent with ART #345
- Updating openshift-enterprise-builder images to be consistent with ART #344
- Updating openshift-enterprise-builder images to be consistent with ART #343
- OCPBUGS-3064: normalize locations in pull/push secrets which might look like URLs #330
- Bump golang.org/x/net from 0.5.0 to 0.7.0 #338
- Bump github.com/opencontainers/runc from 1.1.4 to 1.1.5 #337
- OCPBUGS-7782: bump(github.com/containers/common) to v0.51.2 #335
- Adding Divyanshu Agrawal as a reviewer #334
- Replacing openshift-goimports with goio #333
- Updating development setup steps #331
- Updating openshift-enterprise-builder images to be consistent with ART #332
- Update CONTRIBUTING.md #329
- OCPBUGS-7412: Fix k8s.io/dynamic-resource-allocation error #328
- Modified clusterversion patch command #327
- BUILD-549: bump(*) kubernetes-1.26 #326
- OCPBUGS-597: bump(github.com/containers/buildah) to v1.29.0 #307
- OCPBUGS-6014: manage-dockerfile: use the original form of HEALTHCHECK #323
- Updating openshift-enterprise-builder images to be consistent with ART #319
- Update to go1.19 #320
- BUILD-530: Rebase to k8s.io 1.25 #316
- bump(github.com/containers/buildah) to v1.26.4 #306
- bump github.com/containers/buildah to v1.26.2 #304
- Attempt to create /dev/fuse at startup #305
- Bug 2099991: Add support for BUILDAH_QUIET environment variable #303
- Set _CONTAINERS_USERNS_CONFIGURED if we create a user namespace #301
- Updating openshift-enterprise-builder images to be consistent with ART #302
- BUILD-416: Rebase k8s 1.24 #299
- Update OWNERS file #298
- Updating openshift-enterprise-builder images to be consistent with ART #297
- Bug 2075145: Revert using –quiet with log levels below 2 #296
- Bug 2067775: Update prometheus client_golang from 1.11.0 => 1.11.1 #294
- main(): accept –loglevel as an alias for -v #283
- Bug 2071364: invalid syntax when parsing empty BUILD_LOGLEVEL #293
- Bug 1996883: Add –quiet option to buildah if log level is less than 2 #288
- BUILD-433: use the right mappings when we don’t need to set any #291
- Updating openshift-enterprise-builder images to be consistent with ART #284
- Bug 2026063: Update buildah to v1.24.2 #282
- Add openshift goimports #287
- Bug 2044244: bump(github.com/containers/buildah) to v1.22.4 #281
- Bug 2037638: Add support for build csi volume source #273
- Bug 2034650: Rebase to k8s 1.23.0 #277
- Report User/Group ID when they cannot be parsed #276
- Bug 1979966: Update containers/storage to address incorrect overlay options being set on rhel7 nodes #275
- Bug 2021551: getAssembleUser(): strip the group part out before checking the UID #270
- Bug 2011293: add Red Hat registries to the default registries.conf included in the builder image #266
- Updating openshift-enterprise-builder images to be consistent with ART #264
- Bug 1964327: bump github.com/containers/buildah to v1.22.3 #265
- Dockerfiles: run
rpm --setcaps shadow-utils
during build #256
- Update OWNERS file #260
- BUILD-278: fix cgroupv2 memory max defaulting #252
- Bug 1986003: Rebase to Kubernetes 1.22 #262
- Bug 1971332: bump(s2i): revert incorrect ssh scp fix #257
- Let the serviceability package determine how to tie logrus to klog #255
- unprivileged: don’t try to set up user namespaces for manage-dockerfile/git-clone #254
- Bug 1964327: bump github.com/containers/common to v0.40.0 #253
- unprivileged: add CLI options for isolation and storage #220
- Updating openshift-enterprise-builder images to be consistent with ART #248
- BUILD-278: Check cgroup v1 and cgroup v2 Files for Quota #246
- bump(*) to get updates from openshift/api#954 #250
- BUILD-87: secret configmap volume mounts in builds #245
- Updating .ci-operator.yaml
build_root_image
from openshift/release #247
- Bug 1925412: update dependencies affected by CVE-2021-3121 #244
- Bug 1951084: remove mounts.conf again, but patch buildah change needed to make transient mounts work for us #239
- Bug 1940479: bump(containers/buildah) 1.20.0 #243
- Bug 1947164: Print “Successfully pushed” only if push succeeded #232
- Bug 1940488: move entitlement related secrets back to mounts.conf #238
- Bug 1943614: add explict exit log after buildah pull image; tweak existing start log priot to buildah pull image call #236
- Bug 1943614: add enter/exit logging around buildah pull image #233
- Bug 1940488: add etc-pki-entitlements from pod secrets if available to build container #228
- Bug 1926021: Update buildah to v1.19.8, containernetworking/cni to v0.8.1 #229
- Updating openshift-enterprise-builder builder & base images to be consistent with ART #217
- Bug 1905095: bump github.com/containers/image #221
- Bug 1937535: retry image pulls during builds #222
- Bug 1895053: Mount CA trust store in builds #218
- Bug 1918153: incorrect escaping of HTML symbols in envars #215
- Bug 1905095: bump github.com/containers/image to v5.10.1 #213
- Bug 1916897: narrow scope of rhsm transient bind mount #206
- Bug 1918879: better surface dockerconfigjson errors causing image pull errors #200
- Force use of runc, since we know we’re privileged, and customize our seccomp filter #202
- Bug 1916897: more automount of cluster trust bundle reverts; no longer automount /run/secrets #204
- Bug 1908361: BUILD-150: bump(*): k8s 1.20.0 #197
- Bug 1907407: Use -mod=vendor to determine buildah version #199
- Bug 1907407: Print buildah version #196
- Bug 1896446: Fix private git clones behind a proxy #189
- Move dev Dockerfile to Fedora 33 #191
- Bug 1891759: Do not mount /etc/pki/ca-trust in builds #185
- Bug 1889957: Bump dependencies to mitigate CVE-2020-8564 #182
- Bug 1883803: Fixes to merging node credentials #180
- Bug 1884270: bump(*): s2i, klog #179
- Bug 1884610: Upgrade buildah to v1.16.4 #177
- Bug 1878163: Updating Dockerfile.rhel8 baseimages to mach ocp-build-data config #176
- Bug 1843727: bump github.com/openshift/imagebuilder to v1.1.7 #175
- Bug 1872080: Updating Dockerfile.rhel8 baseimages to mach ocp-build-data config #171
- Bug 1833328: bump buildah to v1.16.0 #172
- Bug 1876913: Configure proxy via git config #174
- Bug 1720730: bump github.com/containers/buildah to v1.14.11 #168
- Kubernetes v0.19.0 #167
- Add Dockerfile.rhel8 #165
- Bump containers/storage to v1.20.2 #164
- Bug 1826183: Run update-ca-trust if CA is non-empty #163
- Bug 1839683: bump github.com/openshift/imagebuilder to v1.1.6 #162
- Bug 1844596: Bump buildah to v1.14.10 #160
- builder/common.replaceLastFrom: Remove always-nil error return #161
- Bug 1826183: Generate trust bundle for builds #158
- Bug 1816578: upgrade buildah to v1.14.9 #157
- Clean up imports #155
- Add component to OWNERS #147
- Bug 1842982: preserve ARG values that come before the first FROM #132
- DEVEXP-423: Leveraging node pull credentials. #143
- DEVEXP-558: bldr k8s 118, openshif/api,*-go bump #146
- Bug 1810174: bump github.com/containers/buildah and dependencies #141
- Bug 1809861: leverage new failed build status reasons/messages #142
- hack/lib/build/version: Use BUILD_VERSION and SOURCE_GIT_COMMIT if non-empty #133
- Bug 1802868: bump(github.com/mtrmac/gpgme): v0.1.2 #135
- manage-dockerfile: use the original form of ENV/LABEL #134
- Bug 1801388: use of ARG step in Dockerfile causes panic in imagebuilder (openshift… #130
- Bug 1788982: bump github.com/containers/{storage,image,buildah} #126
- Bug 1774492: turn off forcepull after the special incremental/forcepull pre-build … #116
- bump github.com/containers/storage and dependencies for go 1.13 #123
- Bug 1781793: bump revert s2i bump for 1758305 #120
- Bug 1772179: bump github.com/containers/{storage,buildah} #119
- DEVEXP-488: bump k8s 1.17.0-rc.1 #118
- Bug 1771335: set .dockerconfigjson into containers/image auth file path instead of… #115
- Bug 1755140: do not force skip tls verify to true on image source injection #110
- Bump docker/swarmkit and remove logrus #109
- move to containers/image v5, buildah v1.11.4 #108
- Bug 1758305: Bump s2i #106
- Bump k8s 1.16.2 #105
- Bump golang version to 1.12 #104
- Bug 1745192: seed containers/image with entire dockerconfig for authentication in … #102
- Bug 1753247: listen for sigterm and terminate #101
- Bug 1745789: toggle ssh parameters if ssh-auth source secret includes a known_host… #96
- Bug 1747937: Forwarding HTTPProxy environment variables. #95
- Bug 1716697: Strip the tag from the reference we print after pushing an image #89
- Bump github.com/containers/{storage,image,buildah} #93
- Adding LICENSE file to project #85
- Bug 1746499: Add “:latest” to push tag if none is specified #92
- Rebase k8s to 1.14 #86
- Remove fuse-overlayfs from Dockerfiles #88
- clean up of some CA mount logic that is now handled by the build controller #87
- Change containers to allow building without privilege. #79
- bump(*): Remove origin dependency #82
- Fixed small typo on documentation. #81
- Process $DROP_CAPS #43
- retryImageAction: strip error wrappings for MultiError members #68
- Parse $BUILD_STORAGE_OPTIONS to set storage options #74
- Start using Buildah versus Docker for building container images #80
- Bump github.com/containers/{storage,buildah} #78
- Heed the ImageOptimizationPolicy #35
- Bug 1712245: bump github.com/containers/buildah and github.com/openshift/source-to-image #76
- push: log the image’s canonical reference #75
- Bug 1707941, 1709945: bump github.com/containers/{storage,image,buildah} #72
- Contributing guide #62
- Bug 1704767: S2I incremental build not working #70
- Bug 1695622, 1699129: bump buildah to v1.8.2, pin most dependencies #67
- Raise file and process limits before building an image #69
- retryImageAction: strip error wrappings for ErrUnauthorizedForCredentials #66
- Bug 1698152: fix image source extraction with trailing “/.” #59
- Bug 1696756: Fix Assemble User in S2I builds #61
- Do not print credentials into build log #60
- bug: 1694871 bump(*): pin glog level #58
- bug: 1694864 - only log error if there is one #57
- Fix empty name in status update #56
- Add verbose output for bsdtar #55
- fix up owners files #53
- Bug 1688779: Ensure image exists for incremental builds #52
- Switch back to the openshift docker fork #51
- Drop unused copyImageSource() function #50
- bump(*): bump buildah to v1.7.1 #49
- S2IBuilder.pullImage: retry pulls #46
- Bug 1682978: Report builder version #47
- Add adambkaplan as approver #48
- Workaround bug 1677818 in microdnf for new UBI base images #44
- bump(*) #42
- bump(*) - s2i fix for bad ScriptsURL #37
- Limit Default Search to docker.io #36
- Enable blob caching and blobInfo caching #34
- Restore “copy build certificates to /etc/docker/certs.d” #31
- Revert “copy build certificates to /etc/docker/certs.d” #30
- copy build certificates to /etc/docker/certs.d #29
- always retry up to twice #28
- add retry logic for s2i pushes #27
- bump(*) #26
- stop marking internal registry as insecure #25
- ADd a RHEL7 dockerfile and standardize format #23
- imagecontent/storage.conf: remove nodev from mountopt #24
- Renaming additional ca file #21
- remove vestiges of docker daemon codepaths #20
- Updating S2I to use Dockerfile postCommit hooks #13
- delete networking management code #19
- bump(*) #17
- Copy CAs mounted via ConfigMap #15
- add the new registry service to the insecure list #16
- only enable logrus debug at higher loglevels #14
- Retry pulling or pushing images, for certain errors #12
- callback-based retryImageAction + Don’t ignore errors reported during Docker push/pull #10
- Add ability to set image tag from make command #9
- remove multistage logic since buildah supports it implicitly #8
- update deps to pick up buildah multistage fixes #7
- switch the builder image to use buildah instead of docker daemon #5
- add a verify target+test #6
- initial population of builder repo #2
- initial owners file #1
- Full changelog
Source code for this page located on github