[ubuntu/focal-security] cinder 2:16.1.0-0ubuntu1 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Tue Jul 7 14:11:43 UTC 2020


cinder (2:16.1.0-0ubuntu1) focal-security; urgency=medium

  [ Chris MacNaughton ]
  * New stable point release for OpenStack Ussuri (LP: #1883879).

  [ Corey Bryant ]
  * SECURITY UPDATE: Dell EMC ScaleIO/VxFlex OS Backend Credentials Exposure
    (LP: #1823200)
    - Remove VxFlex OS credentials from connection_properties. Passwords are
      now stored in separate file and are retrieved during each attach/detach
      operation. Cinder is patched in 16.1.0 stable point release.
    - d/control: Align (Build-)Depends with min version of python3-os-brick
      required to fix credential exposure.
    - CVE-2020-10755

Date: 2020-06-29 19:08:14.940503+00:00
Changed-By: Corey Bryant <corey.bryant at canonical.com>
Signed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/cinder/2:16.1.0-0ubuntu1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list