Go
GOPLS ASSEMBLY SUPPORT LANDS, GODEP REFRESH ROLLS ACROSS ECOSYSTEM
The Go toolchain just got smarter about assembly files, and a coordinated dependency update is rolling through every major repo simultaneously.
read --wire →
$ tail -f topics/infra.log
Daily updates from the platform-engineering layer - Kubernetes, Terraform, Linux, Arch, and the tools that run production.
42 updates across 6 projects this week.
One calm review of what shipped across Infrastructure - the commits, releases, and security advisories that matter. Every Monday, with security advisories same-day. Free, unsubscribe in one click.
We'll start you on the top Infrastructure projects - refine anytime. · Read a sample issue →
Go
The Go toolchain just got smarter about assembly files, and a coordinated dependency update is rolling through every major repo simultaneously.
read --wire →
Arch Linux
Process utilities hit stable while Arch's trust infrastructure queues for validation.
read --wire →
HashiCorp
Consul's ECS integration just eliminated a critical race condition that could leave service and proxy health checks diverged in production.
read --wire →
Kubernetes
Kubernetes rolled back a breaking change in server-side apply that corrupted nullable container patches, with the fix propagating across kube-scheduler, endpoints, and resource allocation components within hours.
read --wire →
Go
The vulnerability database shipped 86 new security advisories in four separate CLs, covering first-party Go issues and third-party dependency vulnerabilities that your supply chain scanner needs to know about.
read --wire →
Linux
Andrew Morton just merged 20 memory management fixes into mainline, with 12 tagged for stable backports and a familiar face reclaiming the clang toolchain desk.
read --wire →
Arch Linux
Arch's patched 7.1.3 kernel ships four key security and stability fixes that address GPU deadlocks, display pipeline issues, and unprivileged namespace creation.
read --wire →
HashiCorp
Consul is shipping an emergency base image upgrade to patch two known vulnerabilities, while the Nomad Terraform provider gains a critical feature for preserving task resources during job updates.
read --wire →
Kubernetes
Device Resource Allocation graduated to general availability overnight while kOps fixed a critical cluster-autoscaler blind spot that could strand scale-ups in single zones.
read --wire →
Go
gopls shipped a cleanup that removes hand-written protocol overrides, clearing technical debt just as the modernize analyzer gains new teeth to strip obsolete import comments from module-based Go code.
read --wire →
Linux
Linus pulled five urgent fix sets overnight addressing resource leaks in irqchip drivers, an out-of-bounds vulnerability in Intel SNC resctrl code, and critical perf events regressions.
read --wire →
Arch Linux
Blosc2 compression library and its Python bindings shipped overnight, part of a broader scientific computing stack refresh moving through extra-testing.
read --wire →
HashiCorp
golang.org/x/net jumped four minor versions in go-plugin's security group, patching network stack vulnerabilities that could affect any HashiCorp plugin built on this foundation.
read --wire →
Kubernetes
Test infrastructure bumped to kind 1.36.1 overnight as the Kubernetes website team pushes a major documentation synchronization push across Chinese, Japanese, and English locales.
read --wire →
Linux
The s390 architecture received critical patches for a cryptographic key verification flaw and a buffer reuse vulnerability that could expose kernel memory.
read --wire →
Arch Linux
Four utility packages received rebuild updates overnight while ouch officially moved out of testing into the extra repository.
read --wire →
HashiCorp
The Nomad driver, autoscaler, and pack tooling all pushed development snapshots overnight, giving operators a first look at what's coming in the next stable releases.
read --wire →
Kubernetes
Minikube shipped a critical fix for Helm addon failures on virtualized environments where the package manager isn't pre-installed on the host.
read --wire →
Linux
The kernel team is stamping out use-after-free races in the SMB server while wrestling with a larger-than-usual batch of graphics and filesystem fixes across the stack.
read --wire →
Arch Linux
Arch Linux shipped kernel v7.1.2-arch3 with fixes for AMD display deadlocks, Intel PPS initialization, and unprivileged namespace creation vulnerabilities.
read --wire →