From 935cc2783455408b3a568e2e06d79259f65bb1f7 Mon Sep 17 00:00:00 2001 From: Luiz Aoqui Date: Thu, 19 May 2022 18:45:32 -0400 Subject: [PATCH] prepare release 1.3.1 --- .release/ci.hcl | 1 + CHANGELOG.md | 10 ++++++++++ 2 files changed, 11 insertions(+) diff --git a/.release/ci.hcl b/.release/ci.hcl index 74118631a..2485d0185 100644 --- a/.release/ci.hcl +++ b/.release/ci.hcl @@ -14,6 +14,7 @@ project "nomad" { "release/1.1.x", "release/1.2.x", "release/1.3.x", + "release/1.3.1", ] } } diff --git a/CHANGELOG.md b/CHANGELOG.md index 5f2bf465d..863c9e015 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,3 +1,13 @@ +## 1.3.1 (May 19, 2022) + +SECURITY: + +* A vulnerability was identified in the go-getter library that Nomad uses for its artifacts such that a specially crafted Nomad jobspec can be used for privilege escalation onto client agent hosts. [CVE-2022-30324](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-30324) [[GH-13057](https://github.com/hashicorp/nomad/issues/13057)] + +BUG FIXES: + +* agent: fixed a panic on startup when the `server.protocol_version` config parameter was set [[GH-12962](https://github.com/hashicorp/nomad/issues/12962)] + ## 1.3.0 (May 11, 2022) FEATURES: