Back to Istio Io

Announcing Istio 1.5.9

content/en/news/releases/1.5.x/announcing-1.5.9/index.md

latest716 B
Original Source

This release fixes the security vulnerability described in our August 11th, 2020 news post.

These release notes describe what's different between Istio 1.5.8 and Istio 1.5.9.

{{< relnote >}}

Security update

  • CVE-2020-16844: Callers to TCP services that have a defined Authorization Policies with DENY actions using wildcard suffixes (e.g. *-some-suffix) for source principals or namespace fields will never be denied access.