Skip to content

Bump Rocky Linux 9.7 repositories#2113

Merged
priteau merged 2 commits intostackhpc/2025.1from
bump-rl97
Feb 5, 2026
Merged

Bump Rocky Linux 9.7 repositories#2113
priteau merged 2 commits intostackhpc/2025.1from
bump-rl97

Conversation

@priteau
Copy link
Copy Markdown
Member

@priteau priteau commented Jan 29, 2026

The new kernel version includes a fix for CVE-2025-68285 [1] in libceph.

[1] https://nvd.nist.gov/vuln/detail/CVE-2025-68285

@priteau priteau self-assigned this Jan 29, 2026
@priteau priteau requested a review from a team as a code owner January 29, 2026 13:24
Copy link
Copy Markdown
Contributor

@gemini-code-assist gemini-code-assist Bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request updates Rocky Linux 9.7 repository versions. The justification provided, a fix for CVE-2025-68285, references a CVE ID for a future year. While such IDs can be valid, its status needs to be verified in a public CVE database as it is not currently found. This is a critical issue for a security-related change; please verify and correct the CVE information. Additionally, the pulp-repo-versions.yml file is being manually edited despite its header indicating it is autogenerated. This can lead to future maintenance issues. The prescribed automation should be used to update these versions instead.

Comment thread etc/kayobe/pulp-repo-versions.yml Outdated
The new kernel version includes a fix for CVE-2025-68285 [1] in libceph.

[1] https://nvd.nist.gov/vuln/detail/CVE-2025-68285
Copy link
Copy Markdown
Member

@Alex-Welsh Alex-Welsh left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

seems reno worthy to me

Copy link
Copy Markdown
Member

@cityofships cityofships left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@priteau priteau merged commit ed53c45 into stackhpc/2025.1 Feb 5, 2026
1 of 2 checks passed
@priteau priteau deleted the bump-rl97 branch February 5, 2026 12:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants