Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Fedora 22 Security Advisory: OpenStack Swift Unauthorized Deletion Fix

fedora
Calendar Grey August 7, 2015
Dist Fedora Esm H88
Addresses the issue of improper removal of version-controlled OpenStack Swift objects in Fedora. Discover the specifics of this security patch.
This update fixes CVE-2015-1856, unauthorized deletion of versioned Swift object.

Summary

OpenStack Object Storage (Swift) aggregates commodity servers to work together

in clusters for reliable, redundant, and large-scale storage of static objects.

Objects are written to multiple hardware devices in the data center, with the

OpenStack software responsible for ensuring data replication and integrity

across the cluster. Storage clusters can scale horizontally by adding new nodes,

which are automatically configured. Should a node fail, OpenStack works to

replicate its content from other active nodes. Because OpenStack uses software

logic to ensure data replication and distribution across different devices,

inexpensive commodity hard drives and servers can be used in lieu of more

expensive equipment.

Update Information:

This update fixes CVE-2015-1856, unauthorized deletion of versioned Swift object.

Change Log

* Tue Jul 28 2015 Pete Zaitcev 2.2.0-5 - CVE-2015-1856, unauthorized deletion of versioned Swift object

References


[ 1 ] Bug #1246358 - CVE-2015-1856 openstack-swift: OpenStack Swift: unauthorized deletion of versioned Swift object [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1246358

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update openstack-swift' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: openstack-swift
Product: Fedora 22
Version: 2.2.0
Release: 5.fc22
Summary: OpenStack Object Storage (Swift)

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here