Skip to content

security fixes for 1.28.5#59371

Merged
istio-testing merged 2 commits intoistio:release-1.28from
PetrMc:petrmc/security-cherry-1.28
Mar 11, 2026
Merged

security fixes for 1.28.5#59371
istio-testing merged 2 commits intoistio:release-1.28from
PetrMc:petrmc/security-cherry-1.28

Conversation

@PetrMc
Copy link
Copy Markdown
Contributor

@PetrMc PetrMc commented Mar 10, 2026

Cherry-pick security fixes from istio-private.

PetrMc added 2 commits March 10, 2026 11:56
* pass caller namespace to xds debug handler

Signed-off-by: Petr McAllister <petr.mcallister@gmail.com>

* fix jwks private key leak in fallback path

Signed-off-by: Petr McAllister <petr.mcallister@gmail.com>

* address PR review

Signed-off-by: Petr McAllister <petr.mcallister@gmail.com>

* adapt jwks fix for 1.28 - remove CIDR blocking (1.29-only feature)

* add missing sets import

---------

Signed-off-by: Petr McAllister <petr.mcallister@gmail.com>
Signed-off-by: Petr McAllister <petr.mcallister@gmail.com>
@PetrMc PetrMc requested a review from a team as a code owner March 10, 2026 18:56
@istio-testing istio-testing added the size/L Denotes a PR that changes 100-499 lines, ignoring generated files. label Mar 10, 2026
@istio-testing
Copy link
Copy Markdown
Collaborator

@PetrMc: The following test failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
integ-ambient-mc_istio_release-1.28 a6749b0 link false /test integ-ambient-mc
Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@istio-testing istio-testing merged commit 7f77f92 into istio:release-1.28 Mar 11, 2026
32 of 33 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/L Denotes a PR that changes 100-499 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants