Code Monkey home page Code Monkey logo

Comments (15)

misberner avatar misberner commented on June 27, 2024 14

Hello folks,

thank you for reporting this incident, and our sincere apologies for the disruption this caused.

Due to an unexpected schema change in an upstream vulnerability feed, a corrupted CVE data file has been published to https://definitions.stackrox.io/ and consumed by a large number of Central instances. As a result of the data corruption, Central crashes. To the best of our knowledge, this affects all Central versions.

While we have already taken steps to ensure a non-corrupted version is served from https://definitions.stackrox.io/, affected Centrals will not be able to get out of this crashloop state without manual intervention in order to delete the previously downloaded, corrupted file.

In order to get Central back to a working state, please follow these instructions to delete the file: https://gist.github.com/misberner/c43a666fc0a6ff335925b9800473d489

We have already identified further steps to prevent issues of this kind from happening in the future, specifically ensuring that Central self-heals when a dependency corruption is fixed.

from stackrox.

luciamota avatar luciamota commented on June 27, 2024 11

Same issue happening with version 3.70.1 without any recent changes in configuration/version.

from stackrox.

msugakov avatar msugakov commented on June 27, 2024 10

Thank you for reporting! The team got notified about this issue by internal monitoring and is currently looking into this.

from stackrox.

Roberdvs avatar Roberdvs commented on June 27, 2024 7

Working like a charm! Thank you very much for the quick workaround.

from stackrox.

SimonBaeumer avatar SimonBaeumer commented on June 27, 2024 4

Thanks for providing information about the issue.
The team has found the root cause and currently working on releasing a workaround and releasing a patch fix as soon as possible.

from stackrox.

msugakov avatar msugakov commented on June 27, 2024 3

Unfortunately, all versions of Central may be affected. We understand the root cause and have a recovery command on the way. It will be shared here soon. Sorry for the downtime.

from stackrox.

Roberdvs avatar Roberdvs commented on June 27, 2024 2

Same here on 3.71.0.

Looking at the stack trace I'm guessing something has changed in an external vulnerability database which is now making the Stackrox processing crash? And that's why it started happening suddenly without any changes and affects several versions.

from stackrox.

iljaweis avatar iljaweis commented on June 27, 2024 1

Works for me as well. Thank you for the fix. 🙂

from stackrox.

DarthSlider avatar DarthSlider commented on June 27, 2024 1

confirm it works

from stackrox.

NV-AndreasHahn avatar NV-AndreasHahn commented on June 27, 2024

Same issue. Running Version 3.72.0. Quick fix would be appreciated.

from stackrox.

christianhuening avatar christianhuening commented on June 27, 2024

thanks for reporting @iljaweis
we have the same

from stackrox.

DarthSlider avatar DarthSlider commented on June 27, 2024

Same problem.
image: 'registry.redhat.io/advanced-cluster-security/rhacs-main-rhel8:3.71.0'
It worked for more then month and then suddenly falled into crash loop with the same error.

from stackrox.

orderzi avatar orderzi commented on June 27, 2024

thanks for the response
we've encountered the same problem on 3.71.0

from stackrox.

rukletsov avatar rukletsov commented on June 27, 2024

For posterity: the fix for the problem has been merged, #3504

from stackrox.

steve-heslouin avatar steve-heslouin commented on June 27, 2024

Thanks so much for the fix ;)

from stackrox.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.