Category:

Releases


Release: Chef Client 11.14.6 & Ohai 7.2.4

Ohai Chefs, Today we have released a patch release, 11.14.6, for Chef Client with some regression fixes and enhancements. We needed to skip 11.14.4 since we’ve realized that a couple of fixes slipped through the cracks and wasn’t included in 11.14.4 after tagging.

Read more

Chef Server 11.1.4 Release

Hello Chefs, We are happy to announce that the 11.1.4 release of the open source Chef Server is now available. This is primarily a bug fix release. This release includes a bump in OpenSSL from 1.0.1h to 1.0.1i, as we announced in a previous post.

Read more

Management Console Enterprise Chef Add-on 1.5.4 Released

We are pleased to announce the release of a new version of the Management Console for Enterprise Chef 11, 1.5.4. Please contact [email protected] for details on obtaining this release.

Read more

Release: Chef Client 11.14.2

Ohai Chefs, Today we have released 11.14.2 of Chef Client. We found a regression while releasing 11.14.0 that was significant enough that we cancelled the release and fixed the bug.

Read more

Release: Chef Development Kit 0.2.0 – Windows support and more

Today we have released a new version for Chef Development Kit a.k.a. Chef DK. The biggest highlight of this release is the Windows support. Starting with version 0.2.0 Chef DK is now supported on Windows.

Read more

Release: Chef Container 0.2.0 (beta)

This week, Chef released a version of the Chef client that can run inside a Linux container. This container-friendly client is called chef-container. In this post we’ll give you an introduction to chef-container, its purpose and its components. We’ll also tell you about a new knife plugin for managing container images.

Read more

Enterprise Chef Server Reporting Addon 1.1.3 Release

Reporting 1.1.3 is a bug-fix release to address a regression introduced by Enterprise Chef Server 11.1.8 that contains tightened permissions to Postgresql.

Read more
Posted in:

Chef & Rails CVE-2014-3482

At 17:11 UTC, the Rails security team publicized CVE-2014-3482 and CVE-2014-3483. In short, this vulnerability is related to the PostgreSQL adapater in ActiveRecord. A bug in the SQL quoting code could allow an attacker to carefully craft a request and execute a SQL injection.

Read more
Posted in:

Security Vulnerability Releases of Chef Server

Hello, Today we are releasing new versions of Enterprise Chef Server and Open Source Chef Server to address a PostgreSQL configuration vulnerability error. The defect allows any local user on the system hosting the Chef Server’s PostgreSQL components full access to databases.

Read more

Chef Server 11.1.3 Security Release

Enterprise Chef Server 11.1.3 is a security release to address a PostgreSQL configuration error. The defect allows any local user on the system hosting the Chef Server’s PostgreSQL components full access to databases. We advise all Chef Server users to update to this latest release which corrects the error.

Read more

Releases