Changes since Alpha 4186.0.0
Security fixes:
- Linux (CVE-2024-57876, CVE-2024-57874, CVE-2025-23128, CVE-2025-23125, CVE-2024-57850, CVE-2024-57849, CVE-2024-57843, CVE-2024-48875, CVE-2024-48873, CVE-2024-47809, CVE-2024-47143, CVE-2024-47141, CVE-2024-45828, CVE-2024-43098, CVE-2024-53680, CVE-2024-52332, CVE-2024-50051, CVE-2024-48881, CVE-2024-41935, CVE-2024-56787, CVE-2024-56786, CVE-2024-56785, CVE-2024-56783, CVE-2024-56781, CVE-2024-56640, CVE-2024-56638, CVE-2024-56637, CVE-2024-56636, CVE-2024-56635, CVE-2024-56634, CVE-2024-56651, CVE-2024-56633, CVE-2024-56650, CVE-2024-56649, CVE-2024-56648, CVE-2024-56645, CVE-2024-56644, CVE-2024-56643, CVE-2024-56642, CVE-2024-56641, CVE-2024-56631, CVE-2024-56615, CVE-2024-56623, CVE-2024-56622, CVE-2024-56619, CVE-2024-56617, CVE-2024-56630, CVE-2024-56629, CVE-2024-56628, CVE-2024-56627, CVE-2024-56626, CVE-2024-56625, CVE-2024-56616, CVE-2024-56592, CVE-2024-56590, CVE-2024-56589, CVE-2024-56587, CVE-2024-56614, CVE-2024-56613, CVE-2024-56586, CVE-2024-56611, CVE-2024-56610, CVE-2024-56606, CVE-2024-56605, CVE-2024-56604, CVE-2024-56603, CVE-2024-56585, CVE-2024-56602, CVE-2024-56601, CVE-2024-56600, CVE-2024-56598, CVE-2024-56597, CVE-2024-56596, CVE-2024-56595, CVE-2024-56594, CVE-2024-56593, CVE-2024-56583, CVE-2024-56584, CVE-2024-56565, CVE-2024-56568, CVE-2024-53196, CVE-2024-55639, CVE-2024-54683, CVE-2024-53687, CVE-2024-56770, CVE-2024-56661, CVE-2024-56660, CVE-2024-56659, CVE-2024-56658, CVE-2024-56657, CVE-2024-56655, CVE-2024-56675, CVE-2024-56672, CVE-2024-56654, CVE-2024-56670, CVE-2024-56667, CVE-2024-56665, CVE-2024-56664, CVE-2024-56663, CVE-2024-56662, CVE-2024-56653, CVE-2024-53241, CVE-2024-53240, CVE-2024-53690, CVE-2024-49571, CVE-2024-49568, CVE-2024-47408, CVE-2024-57791, CVE-2024-56372, CVE-2024-56369, CVE-2024-55916, CVE-2024-55881, CVE-2024-54680, CVE-2024-46896, CVE-2024-56719, CVE-2024-56718, CVE-2024-56717, CVE-2024-56716, CVE-2024-56715, CVE-2024-56709, CVE-2024-53164, CVE-2024-57946, CVE-2024-57807, CVE-2024-57798, CVE-2024-57792, CVE-2024-56766, CVE-2024-56765, CVE-2024-56763, CVE-2024-56762, CVE-2024-56760, CVE-2024-56769, CVE-2024-56767, CVE-2023-52881, CVE-2023-52654, CVE-2024-57938, CVE-2024-57933, CVE-2024-57932, CVE-2024-57930, CVE-2024-57931, CVE-2024-57841, CVE-2024-57802, CVE-2024-57801, CVE-2024-54031, CVE-2024-39282, CVE-2024-36476, CVE-2024-57896, CVE-2025-21629, CVE-2024-57903, CVE-2024-57902, CVE-2024-57901, CVE-2024-57900, CVE-2024-57899, CVE-2024-57897, CVE-2024-57890, CVE-2024-57889, CVE-2024-57887, CVE-2024-57885, CVE-2024-57884, CVE-2024-57895, CVE-2024-57894, CVE-2024-57893, CVE-2024-57892, CVE-2024-57882, CVE-2024-53685, CVE-2025-21658, CVE-2025-21656, CVE-2024-57945, CVE-2025-21664, CVE-2025-21663, CVE-2025-21662, CVE-2025-21660, CVE-2024-57939, CVE-2024-57940, CVE-2025-21655, CVE-2024-57913, CVE-2024-57912, CVE-2024-57911, CVE-2024-57910, CVE-2024-57908, CVE-2024-57907, CVE-2024-57929, CVE-2024-57926, CVE-2024-57925, CVE-2024-57906, CVE-2024-57922, CVE-2024-57917, CVE-2024-57916, CVE-2024-57915, CVE-2024-57904, CVE-2025-21654, CVE-2025-21653, CVE-2025-21652, CVE-2025-21640, CVE-2025-21639, CVE-2025-21638, CVE-2025-21637, CVE-2025-21636, CVE-2025-21648, CVE-2025-21647, CVE-2025-21646, CVE-2025-21645, CVE-2025-21642, CVE-2025-21631, CVE-2025-21632)
- curl (CVE-2024-11053, CVE-2024-9681)
- sysext-podman: containers-storage, podman (CVE-2024-9676)
Bug fixes:
- Fixed creating netdev arguments to correctly include commas when no port forwards are passed (flatcar/scripts#2581)
Changes:
- Added support for multiple port forwarding parameters in the QEMU startup script. Users can now specify multiple port forwards using the
-f
option. (flatcar/scripts#2575)
Updates:
- Go (1.22.11)
- Linux (6.6.74 (includes 6.6.73, 6.6.72, 6.6.71, 6.6.70, 6.6.69, 6.6.68, 6.6.67, 6.6.66))
- Linux Firmware (20250109)
- SDK: qemu (8.2.7)
- azure, dev, gce, sysext-python: python (3.11.11_p1)
- base, dev: audit (4.0.2)
- base, dev: bpftool (7.5.0)
- base, dev: btrfs-progs (6.12)
- base, dev: c-ares (1.34.3 (includes 1.34.2, 1.34.1, 1.34.0))
- base, dev: ethtool (6.10)
- base, dev: glib (2.80.5 (includes 2.80.4, 2.80.3, 2.80.2, 2.80.1, 2.80.0))
- base, dev: gnupg (2.4.6)
- base, dev: hwdata (0.390)
- base, dev: intel-microcode (20241112 (includes 20241029))
- base, dev: iproute2 (6.12.0)
- base, dev: kexec-tools (2.0.30)
- base, dev: libcap (2.71)
- base, dev: libgpg-error (1.51)
- base, dev: libnvme (1.11.1 (includes 1.11))
- base, dev: libxml2 (2.12.9)
- base, dev: lsof (4.99.4)
- base, dev: npth (1.8)
- base, dev: nvme-cli (2.11)
- base, dev: openldap (2.6.8 (includes 2.6.7))
- base, dev: strace (6.12 (includes 6.11, 6.10))
- base, dev: usbutils (018)
- base, dev: xfsprogs (6.11.0)
- dev: bash-completion (2.15.0)
- dev: binutils (2.43)
github.com/docker/buildx/releases/tag/v0.13.0), 0.12.0, 0.11.0)) - gce: six (1.17.0)
- sysext-docker: docker-buildx (0.14.0 (includes [0.13.0](https://- sysext-podman: containers-storage (1.55.1)
- sysext-podman: gpgme (1.24.1 (includes 1.24.0))
- sysext-podman: podman (5.3.0)
- sysext-python: charset-normalizer (3.4.1)
- sysext-python: pip (24.3.1 (includes 24.3))
- sysext-python: setuptools (75.6.0 (includes 75.5.0, 75.4.0, 75.3.0, 75.2.0, 75.1.1, 75.1.0, 75.0.0))
- sysext-python: urllib3 (2.3.0)
- sysext-python: wheel (0.45.1 (includes 0.45.0))
- sysext-zfs: zfs (2.2.7 (includes 2.2.6))
- systemd (256.9)
- VMware: libltdl (2.5.4 (includes 2.5.3, 2.5.2, 2.5.1, 2.5.0))