etcd
v3.6.8Kubernetes Coreetcd v3.6.8 changes the timing of a flag removal and includes dependency and toolchain updates tied to named security advisories. The release is relevant to users of the affected flag and to deployments that use the shipped binaries.
Action needed (2)
securityhighThe
go 1.toolchain and named security advisories24. 13 etcd v3.6.8 compiles binaries using
go 1.. The toolchain update is associated with CVE-2025-61726, GHSA-gm9r-q53w-2gh4, CVE-2025-61731, GHSA-xvqr-69v8-f3gv, CVE-2025-61732, and GHSA-8jvr-vh7g-f8gx.24. 13 securitymediumThe
golang.dependency updated for CVE-2025-47914 and CVE-2025-58181org/x/crypto The
golang.dependency is updated to 0.45.0 in etcd v3.6.8 to address CVE-2025-47914 and CVE-2025-58181.org/x/crypto
Plan ahead (1)
deprecatedThe
--max-snapshotsflag, removal postponedremoval planned in v3.8Applies if you use the
--max-snapshotsflag.Removal of the
--max-snapshotsflag is postponed from v3.7 to v3.8 in etcd v3.6.8.
All 1 other recorded changesvalue changes 1
value changes (1)
- - [Revoke the deprecation of the
--snapshot-countflag]
A weekly email arrives when a release needs action. Like the security patches in this release.