copyright | lastupdated | keywords | subcollection | ||
---|---|---|---|---|---|
|
2024-11-13 |
change log, version history, Ingress ALB |
containers |
{{site.data.keyword.attribute-definition-list}}
{: #cl-ingress-alb}
Review the version history for Ingress ALB. {: shortdesc}
{: #cl-ingress-alb-1.11.2}
{: #cl-ingress-alb-1112_7190_iks}
[Default version]{: tag-green}
- Resolves the following CVEs: CVE-2024-9143{: external}.
{: #cl-ingress-alb-1112_7174_iks}
- fix duplicate header nginx logs
{: #cl-ingress-alb-1112_7140_iks}
- Resolves the following CVEs: CVE-2024-8096{: external}, and CVE-2024-45310{: external}.
{: #cl-ingress-alb-1112_7133_iks}
- Resolves the following CVEs: CVE-2024-45310{: external}, and CVE-2024-6119{: external}.
- Updates Go to version
1.22.7
.
{: #cl-ingress-alb-1112_7069_iks}
- add v1.11.2 Ingress NGINX Controller
{: #cl-ingress-alb-1.9.6}
{: #cl-ingress-alb-196_7189_iks}
- Resolves the following CVEs: CVE-2024-9143{: external}, and CVE-2024-45310{: external}.
{: #cl-ingress-alb-196_7132_iks}
- Resolves the following CVEs: CVE-2024-45310{: external}, and CVE-2024-6119{: external}.
- Updates Go to version
1.22.7
.
{: #cl-ingress-alb-196_7029_iks}
- Resolves the following CVEs: CVE-2024-2466{: external}, CVE-2024-2398{: external}, CVE-2024-2379{: external}, CVE-2024-2004{: external}, CVE-2024-0853{: external}, CVE-2024-6874{: external}, and CVE-2024-6197{: external}.
{: #cl-ingress-alb-196_6846_iks}
- Resolves the following CVEs: CVE-2024-5535{: external}, and CVE-2024-4741{: external}.
{: #cl-ingress-alb-196_6779_iks}
- Resolves the following CVEs: CVE-2023-42365{: external}, CVE-2023-42364{: external}, and CVE-2023-33460{: external}.
- Updates Go to version
1.22.4
.
{: #cl-ingress-alb-196_6650_iks}
- Resolves the following CVEs: CVE-2023-42363{: external}, CVE-2023-42364{: external}, CVE-2023-42365{: external}, CVE-2023-42366{: external}, CVE-2024-34459{: external}, and CVE-2024-4603{: external}.
{: #cl-ingress-alb-196_6634_iks}
- Updates Go to version
1.22.3
.
{: #cl-ingress-alb-196_6587_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}.
{: #cl-ingress-alb-196_6547_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}, and CVE-2024-25629{: external}.
- Updates Go to version
1.22.2
.
{: #cl-ingress-alb-196_6505_iks}
- Resolves the following CVEs: CVE-2024-25629{: external}.
- Updates Go to version
1.22.1
.
{: #cl-ingress-alb-196_6450_iks}
- Resolves the following CVEs: CVE-2024-24786{: external}.
- CVE-2024-24786
- Initial release of 1.9.6. For more information, see the community release documentation
{: #cl-ingress-alb-1.9.4}
{: #cl-ingress-alb-194_7028_iks}
- Resolves the following CVEs: CVE-2024-6197{: external}, CVE-2024-2466{: external}, CVE-2024-2398{: external}, CVE-2024-2379{: external}, CVE-2024-2004{: external}, CVE-2024-0853{: external}, and CVE-2024-6874{: external}.
{: #cl-ingress-alb-194_6848_iks}
- Resolves the following CVEs: CVE-2024-4741{: external}, and CVE-2024-5535{: external}.
{: #cl-ingress-alb-194_6775_iks}
- Resolves the following CVEs: CVE-2023-42365{: external}, CVE-2023-42364{: external}, and CVE-2023-42363{: external}.
- Updates Go to version
1.22.4
.
{: #cl-ingress-alb-194_6675_iks}
- Resolves the following CVEs: CVE-2023-42366{: external}, CVE-2024-34459{: external}, and CVE-2024-4603{: external}.
{: #cl-ingress-alb-194_6633_iks}
- Updates Go to version
1.22.3
.
{: #cl-ingress-alb-194_6586_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}.
{: #cl-ingress-alb-194_6553_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}.
- Updates Go to version
1.22.2
.
{: #cl-ingress-alb-194_6489_iks}
- Updates Go to version
1.22.1
.
{: #cl-ingress-alb-194_6447_iks}
- Resolves the following CVEs: CVE-2024-24786{: external}.
- CVE-2024-24786
{: #cl-ingress-alb-194_6376_iks}
- Updates Go to version
1.22.0
.
{: #cl-ingress-alb-194_6359_iks}
- Resolves the following CVEs: CVE-2023-6129{: external}, CVE-2023-6237{: external}, CVE-2024-0727{: external}, CVE-2024-21626{: external}, and CVE-2023-48795{: external}.
- Updates Go to version
1.21.5
.
{: #cl-ingress-alb-1.8.5}
{: #cl-ingress-alb-185_7191_iks}
- Resolves the following CVEs: CVE-2024-9143{: external}.
{: #cl-ingress-alb-185_7131_iks}
- Resolves the following CVEs: CVE-2024-45310{: external}, and CVE-2024-6119{: external}.
- Updates Go to version
1.22.7
.
{: #cl-ingress-alb-185_7030_iks}
- Resolves the following CVEs: CVE-2024-2466{: external}, CVE-2024-2398{: external}, CVE-2024-2379{: external}, CVE-2024-2004{: external}, CVE-2024-0853{: external}, CVE-2024-6874{: external}, and CVE-2024-6197{: external}.
{: #cl-ingress-alb-185_6847_iks}
- Resolves the following CVEs: CVE-2024-4741{: external}, and CVE-2024-5535{: external}.
{: #cl-ingress-alb-185_6773_iks}
- Resolves the following CVEs: CVE-2023-42365{: external}, CVE-2023-42364{: external}, and CVE-2023-42363{: external}.
- Updates Go to version
1.22.4
.
{: #cl-ingress-alb-185_6676_iks}
- Resolves the following CVEs: CVE-2023-42366{: external}, CVE-2024-34459{: external}, and CVE-2024-4603{: external}.
{: #cl-ingress-alb-185_6632_iks}
- Updates Go to version
1.22.3
.
{: #cl-ingress-alb-185_6585_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}.
{: #cl-ingress-alb-185_6560_iks}
- Resolves the following CVEs: CVE-2024-2511{: external}, and CVE-2023-45288{: external}.
- Updates Go to version
1.22.2
.
{: #cl-ingress-alb-185_6488_iks}
- Updates Go to version
1.22.1
.
{: #cl-ingress-alb-185_6449_iks}
- Resolves the following CVEs: CVE-2024-24786{: external}.
- CVE-2024-24786
- Initial release of 1.8.5. For more information, see the community release documentation
{: #cl-ingress-alb-1.8.4}
{: #cl-ingress-alb-184_6375_iks}
- Updates Go to version
1.22.0
.
{: #cl-ingress-alb-184_6363_iks}
- Resolves the following CVEs: CVE-2024-25062{: external}, CVE-2023-6129{: external}, CVE-2023-6237{: external}, CVE-2024-0727{: external}, CVE-2024-21626{: external}, and CVE-2023-48795{: external}.
{: #cl-ingress-alb-1.6.4}
{: #cl-ingress-alb-164_6631_iks}
- Updates Go to version
1.22.3
.
{: #cl-ingress-alb-164_6582_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}.
{: #cl-ingress-alb-164_6555_iks}
- Resolves the following CVEs: CVE-2023-45288{: external}.
- Updates Go to version
1.22.2
.
{: #cl-ingress-alb-164_6487_iks}
- Updates Go to version
1.22.1
.
{: #cl-ingress-alb-164_6448_iks}
- Resolves the following CVEs: CVE-2024-24786{: external}.
- CVE-2024-24786
{: #cl-ingress-alb-164_6374_iks}
- Updates Go to version
1.22.0
.
{: #cl-ingress-alb-164_6344_iks}
- Resolves the following CVEs: CVE-2024-21626{: external}.
{: #1_9_4}
If your Ingress resources use configuration snippets or redirects, their behavior might change with v1.9.4. Validate your configuration before updating. For more information about version 1.9.4, see the 1.9.4 community change log{: external}. {: important}
[Default version]{: tag-green}
1.9.4 is the default version for all ALBs that run the Kubernetes Ingress image. If you have Ingress auto update enabled, your ALBs automatically update to use this image.
{: #1.9.4_6376_iks}
- Updates
golang
version to1.22.0
.
{: #1.9.4_6359_iks}
- Dependency updates.
{: #1.9.4_6346_iks}
- Dependency updates.
- CVE remediation for CVE-2024-21626{: external}.
{: #1.9.4_6292_iks}
- Dependency updates.
- CVE remediation for CVE-2024-0727{: external}.
{: #1.9.4_6251_iks}
- Dependency updates.
- CVE remediation for CVE-2023-6129{: external} and CVE-2023-6237{: external}.
{: #1.9.4_6161_iks}
- Dependency updates.
- CVE remediation for CVE-2023-46219{: external} and CVE-2023-46218{: external}.
{: #1.9.4_5886_iks}
- Dependency updates.
{: #1.9.4_5756_iks}
- Fixes CVE-2023-5678{: external}.
{: #1.9.4_5698_iks}
- Fixes CVE-2023-5044{: external}.
{: #1_8_4}
{: #1.8.4_6375_iks}
- Updates
golang
version to1.22.0
.
{: #1.8.4_6363_iks}
- Dependency updates.
- CVE remediation for CVE-2024-25062{: external}.
{: #1.8.4_6345_iks}
- Dependency updates.
- CVE remediation for CVE-2024-21626{: external}.
{: #1.8.4_6291_iks}
- Dependency updates.
- CVE remediation for CVE-2024-0727{: external}.
{: #1.8.4_6245_iks}
- Dependency updates.
- CVE remediation for CVE-2023-6129{: external} and CVE-2023-6237{: external}.
{: #1.8.4_6173_iks}
- Dependency updates.
- CVE remediation for CVE-2023-46219{: external} and CVE-2023-46218{: external}.
{: #1.8.4_5885_iks}
- Dependency updates.
{: #1.8.4_5757_iks}
- Fixes CVE-2023-5678{: external}.
{: #1.8.4_5644_iks}
- Dependency updates.
{: #1.8.4_5586_iks}
- Initial release of
1.8.4
. For more information, see the community release documentation{: external}. - Resolves CVE-2023-44487{: external}
- Updates
golang
version to1.21.1
.
{: #1_6_4}
{: #1.6.4_6374_iks}
- Updates
golang
version to1.22.0
.
{: #1.6.4_6344_iks}
- Dependency updates.
- CVE remediation for CVE-2024-21626{: external}.
{: #1.6.4_6293_iks}
- Dependency updates.
- CVE remediation for CVE-2024-0727{: external}.
{: #1.6.4_6250_iks}
- Dependency updates.
- CVE remediation for CVE-2023-6129{: external} and CVE-2023-6237{: external}.
{: #1.6.4_6177_iks}
- Dependency updates.
- CVE remediation for CVE-2023-46219{: external} and CVE-2023-46218{: external}.
{: #1.6.4_5884_iks}
- Dependency updates.
- Fixes CVE-2023-5678{: external}.
{: #1.6.4_5727_iks}
- Fixes CVE-2023-5678{: external}.
{: #1.6.4_5642_iks}
- Dependency updates.
{: #1.6.4_5544_iks}
- CVE-2023-39325{: external}
- CVE-2023-38545{: external}
- CVE-2023-38546{: external}
- CVE-2023-44487{: external}
{: #1.6.4_5435_iks}
Go version update.
{: #1.6.4_5406_iks}
- CVE-2023-38039{: external}
- CVE-2023-39318{: external}
- CVE-2023-39319{: external}
{: #1.6.4_5270_iks}
- Resolves CVE-2023-3817{: external}
- Updates
golang
version to1.20.7
.
{: #1.6.4_5219_iks}
- CVE-2023-35945{: external}
- CVE-2023-3446{: external}
{: #1.6.4_5161_iks}
- Resolves CVE-2023-32731{: external}
{: #1.6.4_5067_iks}
- Updates
golang
version to1.20.4
. - CVE-2023-29491{: external}
- CVE-2023-2650{: external}
{: #1.6.4_4170_iks}
- CVE-2023-28319{: external}
- CVE-2023-28320{: external}
- CVE-2023-28321{: external}
- CVE-2023-28322{: external}
{: #1.6.4_4117_iks}
- Image update.
{: #1.6.4_4073_iks}
- CVE-2023-1255{: external}
- CVE-2023-28484{: external}
- CVE-2023-29469{: external}
{: #1.6.4_3976_iks}
Updates golang
to version 1.20.3
.
{: #1.6.4_3947_iks}
- CVE-2023-25809{: external}
- CVE-2023-28642{: external}
- CVE-2023-0464{: external}
- CVE-2023-0465{: external}
- CVE-2023-0466{: external}
{: #1.6.4_3898_iks}
- Updates
golang
version to1.20.2
. - CVE-2023-27533{: external}
- CVE-2023-27534{: external}
- CVE-2023-27535{: external}
- CVE-2023-27536{: external}
- CVE-2023-27537{: external}
- CVE-2023-27538{: external}
{: #1.6.4_3864_iks}
- Initial release of
1.6.4
. For more information, see the community release documentation{: external}. - Updates the default OpenSSL version from
1.1.1t
to3.0.8
.
TLS 1.0 and TLS 1.1 are no longer supported. Upgrade to the newer TLS version, or as a workaround you can change the security level to 0
for OpenSSL, by appending @SECLEVEL=0
to your cipher list in the kube-system/ibm-k8s-controller-config
ConfigMap. For example: ssl-ciphers: HIGH:!aNULL:!MD5:!CAMELLIA:!AESCCM:!ECDH+CHACHA20@SECLEVEL=0
{: important}
{: #archive-unsupported}
{: #1_8_1}
Version 1.8.1 is no longer supported.
{: #1.8.1_5543_iks}
- CVE-2023-39325{: external}
- CVE-2023-38545{: external}
- CVE-2023-38546{: external}
- CVE-2023-44487{: external}
{: #1.8.1_5434_iks}
- Go version update.
{: #1.8.1_5384_iks}
- CVE-2023-38039{: external}
- CVE-2023-39318{: external}
- CVE-2023-39319{: external}
{: #1.8.1_5317_iks}
- Initial release of
1.8.1
. For more information, see the community release documentation{: external}.
{: #1_5_1}
Version 1.5.1 is no longer supported.
{: #1.5.1_5542_iks}
- CVE-2023-39325{: external}
- CVE-2023-38545{: external}
- CVE-2023-38546{: external}
{: #1.5.1_5436_iks}
Go version update.
{: #1.5.1_5407_iks}
- CVE-2023-38039{: external}
- CVE-2023-39318{: external}
- CVE-2023-39319{: external}
{: #1.5.1_5318_iks}
- Resolves CVE-2023-3817{: external}
- Updates
golang
version to1.20.7
.
{: #1.5.1_5217_iks}
- CVE-2023-35945{: external}
- CVE-2023-3446{: external}
{: #1.5.1_5160_iks}
- Resolves CVE-2023-32731{: external}
{: #1.5.1_5074_iks}
- Updates
golang
version to1.20.4
. - CVE-2023-29491{: external}
- CVE-2023-2650{: external}
{: #1.5.1_4168_iks}
- CVE-2023-28319{: external}
- CVE-2023-28320{: external}
- CVE-2023-28321{: external}
- CVE-2023-28322{: external}
{: #1.5.1_4113_iks}
- Image update.
{: #1.5.1_4064_iks}
- CVE-2023-27533{: external}
- CVE-2023-27534{: external}
- CVE-2023-27535{: external}
- CVE-2023-27536{: external}
- CVE-2023-27537{: external}
- CVE-2023-27538{: external}
{: #1.5.1_3977_iks}
Updates golang
to version 1.20.3
.
{: #1.5.1_3951_iks}
- CVE-2023-25809{: external}
- CVE-2023-28642{: external}
- CVE-2023-0464{: external}
- CVE-2023-0465{: external}
{: #1.5.1_3897_iks}
Updates golang
version to 1.20.2
.
{: #1.5.1_3863_iks}
Dependency updates.
{: #1.5.1_3809_iks}
- Updates
golang
version to 1.20.1. - Resolves CVE-2022-41723{: external}
{: #1.5.1_3779_iks}
- CVE-2022-4304{: external}
- CVE-2022-4450{: external}
- CVE-2023-0215{: external}
- CVE-2023-0286{: external}
- CVE-2023-23914{: external}
- CVE-2023-23915{: external}
- CVE-2023-23916{: external}
{: #1.5.1_3705_iks}
Updates the golang version to 1.19.5.
{: #1.5.1_3683_iks}
Introduces support for multiple platform architectures such as AMD64 and s390x.
{: #1.5.1_3536_iks}
Initial release of 1.5.1
. For more information, see the community release documentation{: external}.
{: #1_4_0}
Version 1.4.0 is no longer supported.
{: #1.4.0_5218_iks}
- CVE-2023-35945{: external}
- CVE-2023-3446{: external}
{: #1.4.0_5159_iks}
- Resolves CVE-2023-32731{: external}
{: #1.4.0_5068_iks}
- Updates
golang
version to1.20.4
. - CVE-2023-29491{: external}
- CVE-2023-2650{: external}
{: #1.4.0_4169_iks}
- CVE-2023-28319{: external}
- CVE-2023-28320{: external}
- CVE-2023-28321{: external}
- CVE-2023-28322{: external}
{: #1.4.0_4114_iks}
- Image update.
{: #1.4.0_4062_iks}
- CVE-2023-27533{: external}
- CVE-2023-27534{: external}
- CVE-2023-27535{: external}
- CVE-2023-27536{: external}
- CVE-2023-27537{: external}
- CVE-2023-27538{: external}
{: #1.4.0_3978_iks}
Updates golang
to version 1.20.3
.
{: #1.4.0_3953_iks}
- CVE-2023-25809{: external}
- CVE-2023-28642{: external}
- CVE-2023-0464{: external}
- CVE-2023-0465{: external}
{: #1.4.0_3896_iks}
Updates golang
version to 1.20.2
.
{: #1.4.0_3862_iks}
Dependency updates.
{: #1.4.0_3808_iks}
- Updates
golang
version to 1.20.1. - Resolves CVE-2022-41723{: external}
{: #1.4.0_3783_iks}
- CVE-2023-23914{: external}
- CVE-2023-23915{: external}
- CVE-2023-23916{: external}
{: #1.4.0_3755_iks}
- CVE-2022-4304{: external}
- CVE-2022-4450{: external}
- CVE-2023-0215{: external}
- CVE-2023-0286{: external}
{: #1.4.0_3703_iks}
Updates the golang version to 1.19.5.
{: #1.4.0_3684_iks}
Introduces support for multiple platform architectures such as AMD64 and s390x.
{: #1.4.0_3537_iks}
- CVE-2022-43551{: external}
- CVE-2022-43552{: external}
{: #1.4.0_3297_iks}
CVE-2022-41717{: external}
{: #1.4.0_3212_iks}
Initial release of 1.4.0
. For more information, see the community release documentation{: external}.
{: #1_3_1}
Version 1.3.1 is no longer supported.
{: #1.3.1_3807_ikss}
- Updates
golang
version to 1.20.1. - Resolves CVE-2022-41723{: external}
{: #1.3.1_3777_iks}
- CVE-2023-23914{: external}
- CVE-2023-23915{: external}
- CVE-2023-23916{: external}
{: #1.3.1_3754_iks}
- CVE-2022-4304{: external}
- CVE-2022-4450{: external}
- CVE-2023-0215{: external}
- CVE-2023-0286{: external}
{: #1.3.1_3704_iks}
Updates the golang version to 1.19.5.
{: #1.3.1_3685_iks}
Introduces support for multiple platform architectures such as AMD64 and s390x.
{: #1.3.1_3538_iks}
- CVE-2022-43551{: external}
- CVE-2022-43552{: external}
{: #1.3.1_3298_iks}
CVE-2022-41717{: external}
{: #1.3.1_3192_iks}
Updated the golang version to 1.19.3.
{: #1.3.1_3108_iks}
Initial release of 1.3.1
. For more information, see the community release documentation{: external}.
{: #1_3_0}
Version 1.3.0 is no longer supported.
{: #1.3.0_2907_iks}
- CVE-2022-32221{: external}
- CVE-2022-42915{: external}
- CVE-2022-42916{: external}
{: #1.3.0_2847_iks}
Initial release of 1.3.0
. For more information, see the community release documentation{: external}.
{: #1_2_1}
Version 1.2.1 is no longer supported.
{: #1.2.1_3299_iks}
CVE-2022-41717{: external}
{: #1.2.1_3186_iks}
Updated the golang version to 1.19.3.
{: #1.2.1_3111_iks}
Metadata changes.
{: #1.2.1_2809_iks}
- CVE-2022-32149{: external}
- CVE-2022-40303{: external}
- CVE-2022-40304{: external}
{: #1.2.1_2714_iks}
Updated the NGINX base image.
{: #1.2.1_2646_iks}
- Managed configuration changes. For more information, see Ingress ConfigMap change log.
{: #1.2.1_2558_iks}
- CVE-2022-35252{: external}
- CVE-2022-27664{: external}
{: #1.2.1_2506_iks}
- CVE-2022-3209{: external}
{: #1.2.1_2488_iks}
- CVE-2022-37434{: external}
{: #1.2.1_2487_iks}
- CVE-2022-37434{: external}
{: #1.2.1_2426_iks}
- CVE-2022-30065{: external}
- CVE-2022-21221{: external}
{: #1.2.1_2415_iks}
- CVE-2022-29458{: external}
- CVE-2022-2097{: external}
- CVE-2022-27781{: external}
- CVE-2022-27782{: external}
- CVE-2022-32205{: external}
- CVE-2022-32206{: external}
- CVE-2022-32207{: external}
- CVE-2022-32208{: external}
{: #1.2.1_2337_iks}
- Initial release of
1.2.1
. For more information, see the community release documentation{: external}. - Resolves CVE-2021-25748{: external}
{: #1_2_0}
{: #1.2.0_2251_iks}
Resolves CVE-2022-29824{: external}
{: #1.2.0_2147_iks}
- CVE-2022-22576{: external}
- CVE-2022-27774{: external}
- CVE-2022-27775{: external}
- CVE-2022-27776{: external}
- CVE-2022-28327{: external}
- CVE-2022-24675{: external}
- CVE-2022-27536{: external}
{: #1.2.0_2131_iks}
- Initial release of
1.2.0
. For more information, see the community release documentation{: external}. - Resolves CVE-2021-25745{: external} and CVE-2021-25746{: external}. For more information, see the security bulletin{: external}.
{: #1_1_2}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 1.1.2 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
Version 1.1.2 is no longer available.
{: #1.1.2_2808_iks}
- CVE-2022-32149{: external}
- CVE-2022-40303{: external}
- CVE-2022-40304{: external}
{: #1.1.2_2645_iks}
- Managed configuration changes. For more information, see Ingress ConfigMap change log.
{: #1.1.2_2586_iks}
- CVE-2022-35252{: external}
- CVE-2022-27664{: external}
{: #1.1.2_2507_iks}
- CVE-2022-3209{: external}
{: #1.1.2_2411_iks}
Resolves CVE-2022-30065{: external}
{: #1.1.2_2368_iks}
- CVE-2022-29458{: external}
- CVE-2022-2097{: external}
{: #1.1.2_2305_iks}
- CVE-2022-29162{: external}
- CVE-2022-21221{: external}
{: #1.1.2_2252_iks}
Resolves CVE-2022-29824{: external}
{: #1.1.2_2146_iks}
- CVE-2022-22576{: external}
- CVE-2022-27774{: external}
- CVE-2022-27775{: external}
- CVE-2022-27776{: external}
- CVE-2022-28327{: external}
- CVE-2022-24675{: external}
- CVE-2022-27536{: external}
{: #1.1.2_2121_iks}
Resolves CVE-2022-1271{: external}
{: #1.1.2_2084_iks}
- CVE-2018-25032{: external}
- CVE-2022-28391{: external}
- CVE-2022-0778{: external}
{: #1.1.2_2050_iks}
- CVE-2022-0778{: external}
- CVE-2022-23308{: external}
{: #1_1_1}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 1.1.1 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #1.1.1_2119_iks}
Resolves CVE-2022-1271{: external}
{: #1.1.1_2085_iks}
- CVE-2018-25032{: external}
- CVE-2022-28391{: external}
- CVE-2022-0778{: external}
{: #1.1.1_2054_iks}
- CVE-2022-0778{: external}
- CVE-2022-23308{: external}
{: #1.1.1_1996_iks}
- CVE-2022-23772{: external}
- CVE-2022-23773{: external}
- CVE-2022-23806{: external}
{: #1.1.1_1949_iks}
- CVE-2021-44716{: external}
- CVE-2021-44717{: external}
{: #1_0_0}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 1.0.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #1.0.3_1995_iks}
- CVE-2022-23772{: external}
- CVE-2022-23773{: external}
- CVE-2022-23806{: external}
{: #1.0.3_1933_iks}
- CVE-2021-44716{: external}
- CVE-2021-44717{: external}
{: #1.0.3_1831_iks}
- CVE-2021-41771{: external}
- CVE-2021-41772{: external}
{: #1.0.3_1730_iks}
{: #1.0.0_1699_iks}
- CVE-2021-22945{: external}
- CVE-2021-22946{: external}
- CVE-2021-22947{: external}
{: #1.0.0_1645_iks}
Initial release of version 1.0.0.
{: #0_49_0}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following sections for a summary of changes for each build of version 0.49.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.49.3_2253_iks}
This image is no longer available. {: note}
Resolves CVE-2022-29824{: external}
{: #0.49.3_2145_iks}
- CVE-2022-22576{: external}
- CVE-2022-27774{: external}
- CVE-2022-27775{: external}
- CVE-2022-27776{: external}
- CVE-2022-28327{: external}
- CVE-2022-24675{: external}
- CVE-2022-27536{: external}
{: #0.49.3_2120_iks}
Resolves CVE-2022-1271{: external}
{: #0.49.3_2083_iks}
- CVE-2018-25032{: external}
- CVE-2022-28391{: external}
- CVE-2022-0778{: external}
{: #0.49.3_2051_iks}
- CVE-2022-0778{: external}
- CVE-2022-23308{: external}
{: #0.49.3_1994_iks}
- CVE-2022-23772{: external}
- CVE-2022-23773{: external}
- CVE-2022-23806{: external}
{: #0.49.3_1941_iks}
- CVE-2021-44716{: external}
- CVE-2021-44717{: external}
{: #0.49.3_1830_iks}
- CVE-2021-41771{: external}
- CVE-2021-41772{: external}
{: #0.49.3_1745_iks}
As of 14 Sept 2021, this is the only image supported for Kubernetes version 1.18 clusters.
{: #0_48_0}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.48.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.48.1_1698_iks}
This image is no longer available. {: note}
- CVE-2021-22945{: external}
- CVE-2021-22946{: external}
- CVE-2021-22947{: external}
{: #0.48.1_1613_iks}
- CVE-2021-3711{: external}
- CVE-2021-3712{: external}
{: #0.48.1_1579_iks}
Updates to support arbitrary controller values in the Ingress classes.
{: #0.48.1_1541_iks}
- CVE-2021-36221{: external}
- CVE-2021-3121{: external}
{: #0.48.1_1465_iks}
{: #0_47_0}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.47.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.47.0_1614_iks}
This image is no longer available. {: note}
- CVE-2021-3711{: external}
- CVE-2021-3712{: external}
{: #0.47.0_1578_iks}
Updates to support arbitrary controller values in the Ingress classes.
{: #0.47.0_1540_iks}
- CVE-2021-36221{: external}
- CVE-2021-3121{: external}
{: #0.47.0_1480_iks}
- CVE-2021-34558{: external}
{: #0.47.0_1434_iks}
- CVE-2021-3541{: external}{: extenral}
- CVE-2021-22925{: external}
- CVE-2021-22924{: external}
{: #0.47.0_1376_iks}
- CVE-2019-20633{: external}.
{: #0.47.0_1341_iks}
{: #0_45_0}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.45.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.45.0_1482_iks}
This image is no longer available. {: note}
{: #0.45.0_1435_iks}
- CVE-2021-3541{: external}{: extenral}
- CVE-2021-22925{: external}
- CVE-2021-22924{: external}
{: #0.45.0_1329_iks}
- CVE-2021-22898{: external}
- CVE-2021-22897{: external}
- CVE-2021-22901{: external}
- CVE-2021-33194{: external}
- CVE-2021-31525{: external}
{: #regression}
Due to a regression in the community Kubernetes Ingress NGINX code{: external}, trailing slashes (/
) are removed from subdomains during TLS redirects.
{: #0.45.0_1228_iks}
{: #0_43_0}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.43.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.43.0_1697_iks}
This image is no longer available. {: note}
- CVE-2021-22945{: external}
- CVE-2021-22946{: external}
- CVE-2021-22947{: external}
{: #0.43.0_1612_iks}
- CVE-2021-3711{: external}
- CVE-2021-3712{: external}
{: #0.43.0_1580_iks}
Updates to support arbitrary controller values in the Ingress classes.
{: #0.43.0_1539_iks}
- CVE-2021-36221{: external}
- CVE-2021-3121{: external}
{: #0_35_0}
Kubernetes Ingress controller version 0.35.0 is no longer supported. {: important}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.35.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.35.0_1374_iks}
- CVE-2019-20633{: external}.
{: #0.35.0_1330_iks}
- CVE-2021-22898{: external}
- CVE-2021-22897{: external}
- CVE-2021-22901{: external}
- CVE-2021-33194{: external}
- CVE-2021-31525{: external}
{: #0.35.0_1182_iks}
- CVE-2021-20305{: external}
- CVE-2021-28851{: external}
- CVE-2021-28852{: external}
{: #0.35.0_1155_iks}
- CVE-2021-3449{: external}
- CVE-2021-3450{: external}
{: #version-update}
In the ibm-k8s-controller-config
ConfigMap, sets the server-tokens
field to False
so that the NGINX version is not returned in response headers.
{: #0.35.0_1094_iks}
- CVE-2021-3114{: external}
- CVE-2021-3115{: external}
{: #0.35.0_869_iks}
- CVE-2020-28241{: external}
{: #0.35.0_826_iks}
- CVE-2020-1971{: external}.
{: #0.35.0_767_iks}
- CVE-2020-28362{: external}
- CVE-2020-28367{: external}
- CVE-2020-28366{: external}
{: #0.35.0_474_iks}
- CVE-2020-24977{: external}
- CVE-2020-8169{: external}
- CVE-2020-8177{: external}
{: #0_34_1}
For the community changes for this version of the Kubernetes Ingress image, see the community Kubernetes change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.34.1 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.34.1_1331_iks}
- CVE-2021-22898{: external}
- CVE-2021-22897{: external}
- CVE-2021-22901{: external}
- CVE-2021-33194{: external}
- CVE-2021-31525{: external}
{: #0.34.1_1191_iks}
- CVE-2021-20305{: external}
- CVE-2021-28851{: external}
- CVE-2021-28852{: external}
{: #0.34.1_1153_iks}
- CVE-2021-3449{: external}
- CVE-2021-3450{: external}.
{: #version-update-34}
In the ibm-k8s-controller-config
ConfigMap, sets the server-tokens
field to False
so that the NGINX version is not returned in response headers.
{: #0.34.1_1096_iks}
- CVE-2021-3114{: external}
- CVE-2021-3115{: external}
{: #0.34.1_866_iks}
- CVE-2020-28241{: external}.
{: #0.34.1_835_iks}
- CVE-2020-1971{: external}.
{: #0.34.1_764_iks}
- CVE-2020-28362{: external}
- CVE-2020-28367{: external}
- CVE-2020-28366{: external}
{: #0.34.1_391_iks}
- CVE-2019-15847{: external}.
{: #0_33_0}
For the community changes for this version of the Kubernetes Ingress image, see the community change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.33.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #0.33.0_1198_iks}
- CVE-2021-20305{: external}
- CVE-2021-28851{: external}
- CVE-2021-28852{: external}
{: #0.33.0_1154_iks}
- CVE-2021-3449{: external}
- CVE-2021-3450{: external}
{: #version-updates-33}
In the ibm-k8s-controller-config
ConfigMap, sets the server-tokens
field to False
so that the NGINX version is not returned in response headers.
{: #0.33.0_1097_iks}
- CVE-2021-3114{: external}
- CVE-2021-3115{: external}
{: #0.33.0_865_iks}
- CVE-2020-28241{: external}.
{: #0.33.0_834_iks}
- CVE-2020-1971{: external}.
{: #0.33.0_768_iks}
- CVE-2020-28362{: external}
- CVE-2020-28367{: external}
- CVE-2020-28366{: external}
{: #0.33.0_390_iks}
- CVE-2019-15847{: external}.
{: #0_32_0}
For the community changes for this version of the Kubernetes Ingress image, see the community change log for ingress-nginx
{: external}. Refer to the following table for a summary of changes for each build of version 0.32.0 of the Kubernetes Ingress image that {{site.data.keyword.containerlong_notm}} releases.
{: shortdesc}
{: #version-update-32}
In the ibm-k8s-controller-config
ConfigMap, sets the server-tokens
field to False
so that the NGINX version is not returned in response headers.
{: #0.32.0_392_iks}
- CVE-2019-15847{: external}.