An update for openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 16.2 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: Red Hat OpenStack Platform 16.2 (openstack-tripleo-heat-templates) security update Advisory ID: RHSA-2022:0995-01 Product: Red Hat OpenStack Platform Advisory URL: https://access.redhat.com/errata/RHSA-2022:0995 Issue date: 2022-03-23 CVE Names: CVE-2021-4180 ==================================================================== 1. Summary: An update for openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 16.2 (Train). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenStack Platform 16.2 - noarch 3. Description: Heat templates for TripleO Security Fix(es): * Data leak of internal URL through keystone_authtoken (CVE-2021-4180) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1855678 - Configure Ceph Messenger for encryption OTW 1869587 - Octavia and LB issues after OSP13z11 and OSP16.x upgrade 1886762 - [RFE] support NFS mount at the conversion directory 1921112 - [OSP13-> OSP16.2]nova-consoleauth still present in cli after upgrade. 1949673 - [RHOSP16.2] [rsyslog] Miss configuration generated in 50_openstack_logs.conf 1949675 - [RHOSP16.2] [rsyslog] rsyslog containers does not forward logs to elasticsearch 1955562 - Backup and Restore: Backup openstack client integration - openstack backup using bad nfs server address is not erroring out 1962304 - cinder volume at DCN unable to read central cephx keyring 1965233 - [FFU 13 -> 16.x] xinetd is running after upgrade, blocking swift_rsync container 1969411 - [RFE]: allow for the deployment of RHCS dashboard on any composable network 1975271 - Minor update does not restart ha resource when it is in failed stated 1976055 - Configuration of Memcached TLS requires the user to duplicate configuration entries 1978228 - [OSP13-> OSP16.2] Leapp upgrade failed with TLSEverywhere 1980542 - [16.2] LC_CTYPE: cannot change locale (C.UTF-8) during OC upgrade 13 to 16.2 seems to fail upgrade 1983748 - NeutronL3AgentAvailabilityZone does not set specified value for Availability zone of Neutron L3 agent 1984555 - [RHOSP16.2] Smart plugin doesn't work for CAP_SYS_RAWIO capability missing. 1984875 - [OSP13-> 16.2] the leapp persistentnetnamesdisable actor should be removed so that a reboot can be avoided 1992506 - [RHOSP16.2] dpdk ovs vhost postcopy requires to start ovs with --mlockall=no 1999324 - NovaLiveMigrationPermitAutoConverge should default to true to match NovaLiveMigrationPermitPostCopy 1999725 - [RFE] Allow for the deployment of Ganesha on the overcloud "external" network 2000582 - ceph ssl radosgw port is closed for tempest (undercloud node) 2002346 - [OSP-16.2] [Upgrades][TripleO] Revert of the TSX change in tripleoclient 2003176 - [OSP16.2] ovn-dbs pacemaker update_tasks can race with pacemaker update_tasks 2005086 - Unable to disable gateway validation on deployment 2005680 - Cinder __DEFAULT__ volume type is installed but *tripleo* volume type is the real default 2008418 - Stack reconfiguration failed because ha-proxy container crashed duringreconfiguration 2009422 - Deployment failing due to "Create /etc/openstack directory if it does not exist" task 2010114 - Openstack ceilometer archival policy is not taking effect 2010703 - rhosp-release package is removed during upgrade from all nodes 2010940 - ceph-nfs not coming up after the FFU 2013913 - Minion should be configured with same default tuning as Undercloud for atleast heat & ironic 2014758 - There's a typo in MySQLInodbBufferPoolSize as it should be MySQLInnodbBufferPoolSize 2021575 - [16.2] openstack overcloud upgrade run times out / HAProxy container fails to start 2022234 - Parameter 'ValidateGatewaysIcmp:false' is not working in OSP16.2 2022691 - [OSP16.2] qemu logs are not accessible on the host 2026290 - Some log files are not collected/relayed by rsyslog to remote log server 2027787 - Undercloud upgrade to 16.2 fails because of missing dependencies of swtpm 2030409 - [OSP16.2] Memcached if off for Heat, Keystone and Nova since caching backend is dogpile.cache.null 2031110 - Long t-h-t role name causes OVNMacAddressPort tag to exceed the neutron tag length limit 2032010 - [OSP16.2.0] neutron-dhcp-agent causes oom issues on controllers2034189 - Validation if NTP/Chrony is configured during at initial stage of deployment procedure 2034730 - Horizon log not collected/relayed by rsyslog to remote log server 2035793 - CVE-2021-4180 openstack-tripleo-heat-templates: data leak of internal URL through keystone_authtoken 2037940 - [OVN] Enable ovn-monitor-all to help with OVN scale 2038897 - [RHOSP16.2] [DCN] [STF] metrics_qdr containers failed to start with bind address error 2046185 - From time to time memcached stops processing requests and brings down OpenStack control plane 2046211 - [OSP13-> OSP16.2] Leapp actors directory change impacting in the upgrade 2050154 - [update] 16.1-> 16.2 experience a connectivity cut (ping loss) to FIP during update of the controllers. 6. Package List: Red Hat OpenStack Platform16.2: Source: openstack-tripleo-heat-templates-11.6.1-2.20220116004912.el8ost.src.rpm noarch: openstack-tripleo-heat-templates-11.6.1-2.20220116004912.el8ost.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2021-4180 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2022 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYjvmKNzjgjWX9erEAQispxAAihi4ziFGX97tUuSGWQgConiT5Hewws7X 84GxTMJ82iW7M7bQBPW6+YaKsKqqt3Yd3+1qCJG2q4A1j8dR/9Cy9U93AHHqMZe+ HOALT/1JQzrmH/DZGkuj5buhaHLYxbeBv/3IlyoaZVPRhu8xZ6wD/1OnPPTkc0LA HrEc47t5bVTmAqMyTdnBi5+0FxmgabOErSZk2MaWfTiBUpDbZfgO4Nw6Kq0UZyG1 q72gOnR6ZPCZG3n+QDIZytifEW9wCpngF8H5lOYe+BLErmBySUGtQubWllBA02Go DXIb4pPmtc7O08CVywTfdxAFTdaE69pk7LhB9/XRRVeLMkHc7ICKqtJmNXkyYugW 6zI/F950TzTqHlx7cRnEOY44D3sHva3CMy2QQHgz93FPiSdnNktLimP116jJHUfZ R6BAg4nBU8T1scTf0SBTurJeVhmOh9r5zyGRSzdDKA/iS6qY0u/RTzaQKLZrM2fl BPKbyZwQPFvGYepjBtSbKEbdXihz+b03N2KDg7XI4RP7z6k/qHnUAJ9lNIt9t9gI hJmiKyGAzrHKNqkuzXrMRhOnbfgElzMI2epsfUtYSfx3cga6NB4fQafT+YVZotLJ 1DkCfWDmwr/6qVqMNfqLh4KhC1WjwwYKFeqz5VYbNagEhe2Zn7ALIBc+b4xjp+8E UKkhXd7aiwk=yB4a -----END PGP SIGNATURE----- -- RHSA-announce mailing list
An update for openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: openstack-tripleo-heat-templates security update Advisory ID: RHSA-2020:3199-01 Product: Red Hat OpenStack Platform Advisory URL: https://access.redhat.com/errata/RHSA-2020:3199 Issue date: 2020-07-29 CVE Names: CVE-2020-10731 ==================================================================== 1. Summary: An update for openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 16.1 (Train). Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenStack Platform 16.1 - noarch 3. Description: openstack-tripleo-heat-templates is a collection of OpenStack Orchestration templates and tools (codename heat), which can be used to help deploy OpenStack. Security Fix(es): * EMBARGOED CVE-2020-10731 openstack-tripleo-heat-templates: No sVirt protection for OSP16 VMs due to disabled SELinux (CVE-2020-10731) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1831544 - CVE-2020-10731 openstack-tripleo-heat-templates: NosVirt protection for OSP16 VMs due to disabled SELinux 6. Package List: Red Hat OpenStack Platform 16.1: Source: openstack-tripleo-heat-templates-11.3.2-0.20200616081532.396affd.el8ost.src.rpm noarch: openstack-tripleo-heat-templates-11.3.2-0.20200616081532.396affd.el8ost.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2020-10731 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXyEi9tzjgjWX9erEAQhtPg/+IdY9h4ezP+08Y/uvFlpdDoMgg+UNSpDr G1BSdnnVRKMr/GiJhA4C6GGjg+eoBBaOrpSbM9gqBwmHXlRS1oFy5qiqDvKy2TIc wcSZh6noiMGkfgtCJ89OUuqzTWpvfpJWkIX4q3bUA6aRNJNcEHCFUbBw5XHwnUvn t08nRWZOrU7TYbk7YDDNiQFTcEIXlssZfv4d88fOpNK57WwTQLTkyGmvgiq1D1oj clszRd1jDsSIKq2Mll6wh6AeZfXUvoNu26LPP6/LnHpPbtACgT4z2EgiGFzqWZkQ hkSfe5YeGJ2Ca0KPdt9wFVt1uPSyyzUqVz7jJ9cEkcuCNJGspcy+1DFszEgXcpS2 bOonkJ++3ZrND2Tvrn2GF+7en1X4SSC6VqfvsA7vdk7FbCtFFgWgr9lB4gO4kZiD +v3BGkTSDCzSopCtP8juR6mfXUsFMnAFizK6cN6UKVyyuIuAoSNV0/gHDHCmm6JJ x+skQ52QB1Gnbg+Bzsa3Ws5uSL+ALAjmq2Oddkqx2c2rOkEUj6nf32VlIOFRUBMu 3ecpC9LL1vKk3Xf1Dq6ezSeWrpx4vfb+tv1V4zB128wdvNS7RRt/Y4yVsM8h9nqB AHvC0MwqxSwyA/DKNIede4zz9Z65OplRebEUlwB/ZiZf637/K9YMWEAXQP5ozifC iOsSX3mFTMA=aoxa -----END PGP SIGNATURE----- -- RHSA-announce mailing list
An update for openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 13.0 (Queens) for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: openstack-tripleo-heat-templates security update Advisory ID: RHSA-2018:2214-01 Product: Red Hat Enterprise Linux OpenStack Platform Advisory URL: https://access.redhat.com/errata/RHSA-2018:2214 Issue date: 2018-07-19 CVE Names: CVE-2018-10898 ==================================================================== 1. Summary: An update for openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 13.0 (Queens) for RHEL 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenStack Platform 13.0 - noarch 3. Description: openstack-tripleo-heat-templates is a collection of OpenStack Orchestration templates and tools (codename heat), which can be used to help deploy OpenStack. Security fix(es): * openstack-tripleo-heat-templates: Default ODL deployment uses hard coded administrative credentials (CVE-2018-10898) For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section. For more information about the bug fixes and enhancements included with this update, see the "Technical Notes" section of the Release Notes linked in the References section. 4. Solution: For details on how to apply this update, which includes thechanges described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1559055 - [Infra] docker logs opendaylight_api command doesn't show the OpenDaylight controller's log 1559105 - OC update does not set additional RBD Cinder backend on stack update 1586132 - OSP13 minor update: docker/services/pacemaker/ovn-dbs.yaml is missing update_tasks 1586171 - [Update] Update of OpenStack and OpenDaylight fails 1589346 - Minor Update runs common_deploy_steps_tasks.yaml twice 1592424 - UpgradeInitCommonCommand not executed on split stack environments 1592823 - Update logs should have timestamps to make debugging easier 1593757 - Firewall rules for octavia-api are not created on UPDATE 1594328 - [Deployment] Use secure ODL password by default 1594333 - [Deployment] Karaf shell should only be exposed to internal API network 1600360 - CVE-2018-10898 openstack-tripleo-heat-templates: Default ODL deployment uses hard coded administrative credentials 6. Package List: Red Hat OpenStack Platform 13.0: Source: openstack-tripleo-common-8.6.1-23.el7ost.src.rpm openstack-tripleo-heat-templates-8.0.2-43.el7ost.src.rpm puppet-opendaylight-8.1.2-2.38977efgit.el7ost.src.rpm python-tripleoclient-9.2.1-13.el7ost.src.rpm noarch: openstack-tripleo-common-8.6.1-23.el7ost.noarch.rpm openstack-tripleo-common-container-base-8.6.1-23.el7ost.noarch.rpm openstack-tripleo-common-containers-8.6.1-23.el7ost.noarch.rpm openstack-tripleo-common-devtools-8.6.1-23.el7ost.noarch.rpm openstack-tripleo-heat-templates-8.0.2-43.el7ost.noarch.rpm puppet-opendaylight-8.1.2-2.38977efgit.el7ost.noarch.rpm python-tripleoclient-9.2.1-13.el7ost.noarch.rpm Red Hat OpenStack Platform 13.0: Source: puppet-opendaylight-8.1.2-2.38977efgit.el7ost.src.rpm noarch: puppet-opendaylight-8.1.2-2.38977efgit.el7ost.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7.References: https://access.redhat.com/security/cve/CVE-2018-10898 https://access.redhat.com/security/updates/classification/#important https://docs.redhat.com/en/documentation/red_hat_openstack_platform/13/html/release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2018 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBW1Cf99zjgjWX9erEAQhcqA/+MWFCs3KnVDfQnIwLAynFJyFefJMW/Qt8 KGxjF4h0qPfm+XBPLZBhxQ8c4ZlghD6VQYFSxcPYTYX+wgdug3OvgPxpvhbd9Mmu bwvRfFBqObNsEEUOJW8x8LWrnVLM/+ZrJ7B5PewceRSFNkR35qC48TaUm8NGTw16 v97UsnlFZCHbEIFqCZEFXORyVLqmlH7DthaTLwXKHX0OzStwiEfYcMIRaEN113Eq KxosczNmQlSQ+XhI1c/t3RdTXz1ocDn5lKfn3NJktApDbS+8KOcaNtksSBi/0EWh dmd2BAlaYgQR4rsbOtPjFnxMpmkg3dQrMGsSNKjpgy2Ns1uymV97cXO3QRTPAGZb dnKK7LooJqjsZcUMDq+eCMwt9JknGamGrBb45sbUdc3x0Az7VPPkVsZsHjNkknsF 3zjecNQ4LYZcbi/C2fV6yZB2zjdxx8xUTc6Zk3FFKR5pqZ3TT8mQVrr4uA5j9JWL 0+vkXiTSX+LTIVx2YZY+P8YdIbSQq0TfFaTOhIZ+NhKEeiA3sa59fuVrWwsu1u8H VKpVgPoaQfB6QyFAznhVrT76k3Gev6lbQ24CMBVqUDjDG/Aszdb44qSxaQJYjjZo edb7qXa/X81k3786FMnWtIrCxKzps68eRK+wGudqfrZehu2DwoCjMuXFKJRSvJW0 fweblrGLJJs=MBHe -----END PGP SIGNATURE----- -- RHSA-announce mailing list
An update for openstack-tripleo-common and openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 12.0 (Pike). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: openstack-tripleo-common and openstack-tripleo-heat-templates update Advisory ID: RHSA-2018:0602-01 Product: Red Hat Enterprise Linux OpenStack Platform Advisory URL: https://access.redhat.com/errata/RHSA-2018:0602 Issue date: 2018-03-28 CVE Names: CVE-2017-12155 ==================================================================== 1. Summary: An update for openstack-tripleo-common and openstack-tripleo-heat-templates is now available for Red Hat OpenStack Platform 12.0 (Pike). Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat OpenStack Platform 12.0 - noarch 3. Description: openstack-tripleo-common contains the python library for code common to the Red Hat OpenStack Platform director CLI and GUI (codename tripleo). openstack-tripleo-heat-templates is a collection of OpenStack Orchestration templates and tools (codename heat), which can be used to help deploy OpenStack. Security Fix(es): * openstack-tripleo-heat-templates: Ceph client keyring is world-readable when deployed by director (CVE-2017-12155) For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section. Red Hat would like to thank Katuya Kawakami (NEC) for reportingthis issue. Bug Fix(es): * All Compute and Controller nodes have bridge-mappings configured and therefore are eligible to schedule routers. However, if you scheduled a router on a Compute node that doesn't have a connection to an external network, connectivity with the external network fails. This fix adds the ability to configure bridge-mappings in TripleO and in the director according to roles so that you can now exclude Compute nodes from router scheduling and maintain external network connectivity. (BZ#1510879) * Previously, the CephPools parameter value was incorrectly consumed as a string list instead of as a JSON object. This prevented creating additional Ceph pools during the overcloud deployment, because attempting to pass a JSON object failed. This fix updates the CephPools parameter so that it now accepts any JSON object that describes additional pools to create in the Ceph cluster. Note: The JSON object structure must conform to ceph-ansible conventions. (BZ#1516389) * There is currently a known issue with LDAP integration for Red Hat OpenStack Platform. The `keystone_domain_confg` tag is missing currently from `keystone.yaml`, preventing Puppet from properly applying the required configuration files. Consequently, LDAP integration with Red Hat OpenStack Platform will not be properly configured. As a workaround, you must manually edit `keystone.yaml` and add the missing tag. There are two ways to do this: 1. Edit the file directly: a. Log into the undercloud as the stack user. b. Open the keystone.yaml in the editor of your choice. For example: `sudo vi /usr/share/openstack-tripleo-heat-templates/docker/services/keystone.yaml` c. Append the missing puppet tag, `keystone_domain_confg`, to line 94. For example: `puppet_tags: keystone_config` Changes to: `puppet_tags: keystone_config,keystone_domain_confg` d. Save and close `keystone.yaml`. e. Verify you see the missing tag in the `keystone.yaml` file. The following command should return '1': `cat /usr/share/openstack-tripleo-heat-templates/docker/sercies/keystone.yaml | grep 'puppet_tags: keystone_config,keystone_domain_config' | wc -l` 2. Or, use sed to edit the file inline: a. Login to the undercloud as the stack user. b. Run the following command to add the missing puppet tag: `sed -i 's/puppet_tags: keystone_config/puppet_tags: keystone_config,keystone_domain_config/' /usr/share/openstack-tripleo-heat-templates/docker/services/keystone.yaml` c. Verify you see the missing tag in the keystone.yaml file The following command should return '1': `cat /usr/share/openstack-tripleo-heat-templates/docker/sercies/keystone.yaml | grep 'puppet_tags: keystone_config,keystone_domain_config' | wc -l` (BZ#1519057) * It is only possible to deploy Ceph storage servers if their disk devices are homogeneous. (BZ#1520004) 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1301534 - The gateway_ip attribute for the isolated networks are not accurate 1433534 - [RFE] [OVN] HA support for OVN ovn-northd 1489360 - CVE-2017-12155 openstack-tripleo-heat-templates: Ceph client keyring is world-readable when deployed by director 1507888 - Deployment with ceph and TLS everywhere fails with: "WorkflowTasks_Step2_Execution: ERROR "cannot stat '/var/run/ceph/ceph-mon.overcloud-controller-2.asok': No such file or directory"" 1508601 - Add NetIpMap to hieradata for *ExtraConfig overrides (Composable Networks) 1519765 - containerized HA rabbitmq stops on re-deploy if lsns fails 1523272 - OSP10-> 11-> 12 upgrade: major-upgrade-composable-steps-docker.yaml fails with Error: Evaluation Error: Error while evaluating a Function Call, Could not find class ::panko 1523707 - [UPDATES] PCS managed containers ain't restarted with latest images 1528755 - ConfigDebug setting does not work for docker init bundles 1533097 - CephPools parameter does not add CephXpermission for openstack user 1533468 - capabilities-map.yaml references wrong environment files for ceph services 1533875 - Using the Telmetry Role with Ceph/RBD as gnocchi backend Fails in step 4 of the Deployment 1537725 - Deployment templates for unsupported components causing some confusion 1538828 - standalone Telemetry.yaml role has wrong services and typo 1538875 - mysql_init_bundle container doesn't fail deployment if puppet fails 1539090 - Cinder backups fail when running in a container (non-HA) 1542537 - tox -epep8 fails with ERROR: Generated roles file not match 1543641 - Cinder HA and non-HA containers are not configured the same 1546234 - Rebase openstack-tripleo-heat-templates to 7.0.9 1546807 - [OSP12] After a minor update the swift_rsync container was in restarting state 1547955 - Undercloud / Overcloud Heat stack fails on: YAQL list index out of range (includes upgrades cases) 1551137 - Queue versioned_notifications.info not found 1551461 - [UPDATES] Failed to setup heat-output: refusing to convert between directory and link for /var/log/containers/swift 1552466 - docker_puppet_apply.sh has a fatal typo 1558639 - Collectd not re-using /var/run directory from overcloud node therefor ovs plugin fails to connect to db.sock of openswitch. 6. Package List: Red Hat OpenStack Platform 12.0: Source: openstack-tripleo-heat-templates-7.0.9-8.el7ost.src.rpm noarch: openstack-tripleo-heat-templates-7.0.9-8.el7ost.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2017-12155 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2018 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iD8DBQFau84VXlSAg2UNWIIRAk5OAJ912PmETLFITLgnM/OniepSERyWvACfWCmj hsFDLkLErcQNYFMUT80VIqc=a7WB -----END PGP SIGNATURE----- -- RHSA-announce mailing list
Get the latest Linux and open source security news straight to your inbox.