*** xarlos has quit IRC | 00:07 | |
*** star_cloud has quit IRC | 00:15 | |
*** macz_ has quit IRC | 00:34 | |
*** macz_ has joined #openstack-security | 00:55 | |
*** macz_ has quit IRC | 01:00 | |
*** macz_ has joined #openstack-security | 01:16 | |
*** macz_ has quit IRC | 01:20 | |
*** macz_ has joined #openstack-security | 01:37 | |
*** macz_ has quit IRC | 01:41 | |
*** macz_ has joined #openstack-security | 01:58 | |
*** macz_ has quit IRC | 02:02 | |
*** Jackneill has quit IRC | 02:06 | |
*** macz_ has joined #openstack-security | 02:18 | |
*** Jackneill has joined #openstack-security | 02:19 | |
*** macz_ has quit IRC | 02:23 | |
*** rcernin has quit IRC | 02:27 | |
*** star_cloud has joined #openstack-security | 02:32 | |
*** macz_ has joined #openstack-security | 02:58 | |
*** macz_ has quit IRC | 03:02 | |
*** rcernin has joined #openstack-security | 03:07 | |
*** macz_ has joined #openstack-security | 04:17 | |
*** macz_ has quit IRC | 04:22 | |
*** macz_ has joined #openstack-security | 04:38 | |
*** macz_ has quit IRC | 04:42 | |
*** macz_ has joined #openstack-security | 04:58 | |
*** gyee has quit IRC | 05:01 | |
*** macz_ has quit IRC | 05:03 | |
*** mnaser has quit IRC | 06:32 | |
*** mnaser has joined #openstack-security | 06:34 | |
*** heikkine has joined #openstack-security | 07:44 | |
*** rcernin has quit IRC | 07:47 | |
*** macz_ has joined #openstack-security | 08:10 | |
*** rcernin has joined #openstack-security | 08:12 | |
*** macz_ has quit IRC | 08:15 | |
*** rcernin has quit IRC | 08:19 | |
*** rcernin has joined #openstack-security | 08:26 | |
*** rcernin has quit IRC | 08:31 | |
*** rcernin has joined #openstack-security | 08:37 | |
*** xarlos has joined #openstack-security | 08:43 | |
*** rcernin has quit IRC | 08:51 | |
*** rcernin has joined #openstack-security | 08:56 | |
*** rcernin has quit IRC | 09:02 | |
*** rcernin has joined #openstack-security | 09:28 | |
*** rcernin has quit IRC | 09:35 | |
*** rcernin has joined #openstack-security | 09:59 | |
*** rcernin has quit IRC | 10:31 | |
*** rcernin has joined #openstack-security | 12:58 | |
*** rcernin has quit IRC | 13:02 | |
*** macz_ has joined #openstack-security | 13:41 | |
*** macz_ has quit IRC | 13:45 | |
*** xarlos has quit IRC | 14:10 | |
*** macz_ has joined #openstack-security | 15:19 | |
*** macz_ has quit IRC | 15:24 | |
*** macz_ has joined #openstack-security | 15:58 | |
*** macz_ has quit IRC | 15:59 | |
*** macz_ has joined #openstack-security | 15:59 | |
*** rcernin has joined #openstack-security | 16:58 | |
*** rcernin has quit IRC | 17:02 | |
*** gyee has joined #openstack-security | 17:43 | |
*** star_cloud has quit IRC | 18:25 | |
*** star_cloud has joined #openstack-security | 18:33 | |
fungi | i've marked our ossa task for ancient bug 1561199 "won't fix" | 19:47 |
---|---|---|
openstack | bug 1561199 in Swift3 "Client-accessible headers are used to send authentication information to other middlewares" [Undecided,Fix released] https://launchpad.net/bugs/1561199 | 19:47 |
fungi | same for bug 1562175 | 19:49 |
openstack | bug 1562175 in OpenStack Object Storage (swift) "Pre-auth COPY in versioned_writes can result in a successful COPY that wouldn't have been authorized" [Undecided,Fix released] https://launchpad.net/bugs/1562175 | 19:49 |
fungi | and bug 1566416 | 19:52 |
openstack | bug 1566416 in OpenStack Identity (keystone) "Keystone does not validate that s3tokens requests came from s3_token middleware" [Undecided,Fix released] https://launchpad.net/bugs/1566416 | 19:52 |
*** Jackneill has quit IRC | 19:53 | |
fungi | also bug 1708580 | 20:01 |
openstack | bug 1708580 in OpenStack Security Notes "ovsfw ignores port_ranges under some conditions" [Undecided,New] https://launchpad.net/bugs/1708580 | 20:01 |
fungi | bug 1714858 too | 20:03 |
openstack | bug 1714858 in Cinder "Some APIs don't check the owner policy" [Critical,Fix released] https://launchpad.net/bugs/1714858 - Assigned to TommyLike (hu-husheng) | 20:03 |
fungi | bug 1721193 as well | 20:06 |
openstack | bug 1721193 in OpenStack Dashboard (Horizon) "Outdated and vulnerable versions of Javascript libraries" [Undecided,Incomplete] https://launchpad.net/bugs/1721193 | 20:06 |
*** Jackneill has joined #openstack-security | 20:06 | |
gagehugo | thanks fungi | 20:08 |
fungi | yeah, cleaning house, we'll see how many i can get through today | 20:09 |
*** Jackneill has quit IRC | 20:11 | |
fungi | same for bug 1797575 | 20:17 |
openstack | bug 1797575 in neutron "Security vulnerability with SR-IOV ports" [Undecided,New] https://launchpad.net/bugs/1797575 | 20:17 |
*** Jackneill has joined #openstack-security | 20:23 | |
fungi | and bug 1861893 | 20:23 |
openstack | bug 1861893 in OpenStack Compute (nova) "os-assisted-volume-snapshots passes unsanitised file path to the libvirt driver" [Medium,Confirmed] https://launchpad.net/bugs/1861893 | 20:23 |
fungi | and related trio: bug 1888394, bug 1883659, bug 1892852 | 20:40 |
openstack | bug 1888394 in oslo.cache "Oslo.cache exponencially raising up connection to memcached" [Undecided,In progress] https://launchpad.net/bugs/1888394 | 20:40 |
openstack | bug 1883659 in oslo.cache "keystonemiddleware connections to memcached from neutron-server grow beyond configured values" [Undecided,Confirmed] https://launchpad.net/bugs/1883659 | 20:40 |
openstack | bug 1892852 in oslo.cache "memcached socket not released upon lbaas API request " [Undecided,New] https://launchpad.net/bugs/1892852 | 20:40 |
fungi | and bug 1901891 | 20:50 |
openstack | bug 1901891 in OpenStack Identity (keystone) "Issues regarding application credentials" [Undecided,New] https://launchpad.net/bugs/1901891 | 20:50 |
fungi | okay, i've been through all of them. surveying the ones the vmt is still tracking, we've got this many per project team: glance(1), horizon(3), keystone(2), neutron(7), nova(2), oslo(1), swift(1) | 20:53 |
fungi | some are the same bug across more than one project | 20:53 |
fungi | i'll try to work up individual help requests to each team with their team-specific sets of bugs | 20:54 |
*** rcernin has joined #openstack-security | 20:59 | |
*** rcernin has quit IRC | 21:03 | |
*** rcernin has joined #openstack-security | 21:22 | |
*** rcernin has quit IRC | 21:53 | |
*** rcernin has joined #openstack-security | 22:00 | |
*** star_cloud has quit IRC | 23:06 | |
*** star_cloud has joined #openstack-security | 23:07 | |
*** star_cloud has quit IRC | 23:16 | |
*** star_cloud has joined #openstack-security | 23:18 | |
*** star_cloud has quit IRC | 23:28 | |
*** star_cloud has joined #openstack-security | 23:28 | |
*** star_cloud has quit IRC | 23:38 | |
*** star_cloud has joined #openstack-security | 23:39 |
Generated by irclog2html.py 2.17.2 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!