Skip to content

Pending Release Notes

Kallol Roy edited this page Jan 23, 2025 · 948 revisions

Upgrade Journey

Chef lets you choose your upgrade journey based on your current version of Chef Automate. You can do all the version upgrades manually.

Your Current Version Upgrade To
Any version before 20220329091442 20220329091442
20220329091442 3.0.x
3.0.49 4.x

See the Chef Automate 4.x upgrade documentation for more information.

Bug Fixes

  • Chef Automate UI is not responding when clicking on the “+” symbol to show test results on the Compliance Page. (#8673)
  • Knife Search and Tidy can now return more than 10000 records. Please take a look at the documentation for configuration changes. (#8699)
  • Fix the issue by setting blank server names for all the OpenSearch nodes. (#8711)

Security

Security Updates

(examples: dependency updates, CVE fixes)

  • Dex updated to v2.27.0 which fixes following issues:

CVE-2020-26290
CVE-2020-27847

  • Ruby updated to v3.1.6 which fixes following issues:

CVE-2021-33621
CVE-2024-27280

  • Postgres updated to v13.18 which fixes following issues:

CVE-2024-7348

  • OpenSearch updated to 1.3.20 which fixes following issues:

CVE-2024-22243
CVE-2024-38808
CVE-2024-38809

Chef Packaged Product Versions

This release uses:

  • Chef Habitat version:1.6.1205/20241107140309
  • Chef Habitat Builder version: 9497/20221221224518
  • Chef Infra Server version: 15.10.27/20250102025130
  • Chef InSpec version: 4.56.61/20240809111842

Service Versions

This release uses:

  • Postgres: 13.18
  • OpenSearch: 1.3.20
  • Nginx: 1.25.4
  • Haproxy: 1.25.4
  • Dex: 2.27.0

Supported External Chef Products

This release supports the following external chef products:

  • Chef Infra Server version: 14.0.58+
  • Chef Inspec version: 4.3.2+
  • Chef Infra Client: 17.0.242+
  • Chef Habitat: 0.81+

Supported framework versions

This release is built on the following framework versions:

  • GoLang: 1.22.5
  • OpenJDK: 11.0.22+7
  • Angular: 17.3.0

View the package manifest for the latest release.