Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

SUSE OpenStack Cloud 7: SUSE-SU-2019:0716-1 Moderate: Info Leak Fix

suse
Calendar Grey March 22, 2019
Dist Suse Esm H88
The latest release of openstack-cinder and various other components tackles significant security vulnerabilities while enhancing overall system efficiency.
An update that solves one vulnerability and has four fixes is now available

Summary

This update for openstack-cinder, openstack-horizon-plugin-designate-ui, openstack-neutron, openstack-neutron-lbaas fixes the following issues: Security vulnerabity fixed in openstack-cinder: - CVE-2017-15139: Fixed a leakage of sensitive information between tenants in certain storage volume configurations (bsc#1105476) Bug fixes and other changes in openstack-horizon-plugin-designate-ui: - Remove the py{c} files unconditionally without error messages Bug fixes and other changes in openstack-neutron: - Fixed an issue with neutron leaving behind ovs ports when already in skipped_ports (bsc#1124695) - Require version and release to ensure that subpackages are consistent and coherent (bsc#1119902) - Fixed an issue with lbass neutron ports being down or in status build (bsc#1119902)

References

#1089834 #1105476 #1116475 #1119902 #1124695

Cross- CVE-2017-15139

Affected Products:

SUSE OpenStack Cloud 7

https://www.suse.com/security/cve/CVE-2017-15139.html

https://bugzilla.suse.com/1089834

https://bugzilla.suse.com/1105476

https://bugzilla.suse.com/1116475

https://bugzilla.suse.com/1119902

https://bugzilla.suse.com/1124695

Announcement ID: SUSE-SU-2019:0716-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here