1.32 version change log
View information of version changes for major, minor, and patch updates that are available for your IBM Cloud® Kubernetes Service clusters that run this version. Changes include updates to Kubernetes and IBM Cloud Provider components.
Overview
In Kubernetes, most new beta features are disabled by default. Alpha features, which are subject to change, are disabled in all versions. For more information, see the Default service settings for Kubernetes components and the feature gates for each version.
For more information about major, minor, and patch versions and preparation actions between minor versions, see Kubernetes versions.
Check the Security Bulletins on IBM Cloud Status for security vulnerabilities that affect IBM Cloud Kubernetes Service. You can filter the results to view only Kubernetes Cluster security bulletins that are relevant to IBM Cloud Kubernetes Service. Change log entries that address other security vulnerabilities but don't also refer to an IBM security bulletin are for vulnerabilities that are not known to affect IBM Cloud Kubernetes Service in normal usage. If you run privileged containers, run commands on the workers, or execute untrusted code, then you might be at risk.
Some change logs are for worker node fix packs, and apply only to worker nodes. You must apply these patches to ensure security compliance for your worker nodes. These worker node fix packs can be at a higher version than the master because some build fix packs are specific to worker nodes. Other change logs are for master fix packs, and apply only to the cluster master. Master fix packs might not be automatically applied. You can choose to apply them manually. For more information about patch types, see Update types.
Version 1.32
Worker node fix pack 1.32.1_1528, released 29 January 2025
The following table shows the components included in the worker node fix pack 1.32.1_1528. Worker node patch updates can be applied by updating, reloading (in classic infrastructure), or replacing (in VPC infrastructure) the worker node.
Component | Version | Description |
---|---|---|
UBUNTU_20_04 | 5.4.0-204-generic | Resolves the following CVEs: CVE-2024-11168, and CVE-2025-22134. |
UBUNTU_24_04 | 6.8.0-51-generic | Resolves the following CVEs: CVE-2024-12254, CVE-2024-50349, CVE-2024-52006, and CVE-2025-22134. |
Kubernetes | 1.32.1 | For more information, see the change logs. |
containerd | 1.7.25 | For more information, see the change logs. |
HAProxy | 14daa781a66ca5ed5754656ce53c3cca4af580b5 | N/A |
GPU Device Plug-in and Installer | 6563a84c30f22dd511f6e2d80227040a12c3af9a | Resolves the following CVEs: CVE-2019-12900. |
Master fix pack 1.32.1_1527 and worker node fix pack 1.32.0_1524, released 29 January 2025
Component | Previous | Current | Description |
---|---|---|---|
Calico | v3.28.2 | v3.29.1 | See the Calico release notes. |
CoreDNS | v1.11.4 | v1.12.0 | See the CoreDNS release notes. In addition, the default CoreDNS configuration now has an updated caching configuration. |
IBM Cloud Controller Manager | v1.31.4-3 | v1.32.1-1 | New version contains updates and security fixes. |
Konnectivity agent configuration | N/A | N/A | Konnectivity agent is now configured with a readiness probe to make it easier to identify possible cluster networking problems. |
Kubernetes (master) | v1.31.5 | v1.32.1 | See the Kubernetes release notes. |
Kubernetes (worker node) | v1.31.3 | v1.32.0 | See the Kubernetes release notes. |
Kubernetes configuration | N/A | N/A | See Default service settings for Kubernetes components. |
Kubernetes DNS autoscaler | v1.8.9 | v1.9.0 | See the Kubernetes DNS autoscaler release notes. |
Kubernetes NodeLocal DNS cache | 1.23.1 | 1.24.0 | See the Kubernetes NodeLocal DNS cache release notes. |
Tigera Operator | v1.34.5 | v1.36.3 | See the Tigera Operator release notes. |