This release adds a capability to disable BPF iterators and fixes multiple BPF-iterator issues through a library dependency update. No security issue is disclosed.
Source ↗Releases
AI-analyzed release notes for CNCF graduated and incubating projects.
A release that removes several supported engines and outputs and restricts falco-webui access. It also adds rule and configuration capabilities, includes defect fixes and dependency updates, and discloses no security advisory.
Action needed (1)
breakinggRPC server support, removed
gRPC server support is removed in this release.
Check if affected (5)
securityPlugin library path traversal prevention
Applies if you configure the
plugin library path.The configuration prevents plugin library path traversal via relative paths in this release.
breakingThe
gRPC output, removedApplies if you use the
gRPC output.The
gRPC outputis removed in this release.breakingThe
gVisor engine, removedApplies if you use the
gVisor engine.Support for the
gVisor engineis removed in this release.- + 2 more on the release page
Falco 0.43.1 updates build component versions. The release note discloses no security changes.
Source ↗A maintenance release that removes source-config-path output from release builds, deprecates several userspace interfaces, and rotates the package-signing key. It also includes correctness fixes, dependency updates, and an image-size reduction.
Check if affected (2)
breakingSource config path output in release builds
Applies if you use debug builds.
Source config path output is now limited to debug builds, so release builds no longer include it.
breakingGPG signing key for DEB/RPM packages, rotated
Applies if you use DEB/RPM packages.
The GPG key used to sign DEB/RPM packages has been rotated, and all existing packages have been re-signed. The new key fingerprint is
478B2FBBC75F4237B731DA4365106822B35B1B1F.
Plan ahead (4)
deprecatedThe
--gvisor-generate-configCLI option, deprecatedApplies if you use
--gvisor-generate-config.The
--gvisor-generate-configCLI option is deprecated in userspace.deprecatedThe legacy eBPF probe, deprecated
Applies if you use the legacy eBPF probe.
The legacy eBPF probe is deprecated in userspace.
deprecatedThe gVisor engine, deprecated
Applies if you use the gVisor engine.
The gVisor engine is deprecated in userspace.
- + 1 more on the release page