Jump to: navigation, search

Difference between revisions of "ReleaseNotes/2012.1.3"

m (Text replace - "__NOTOC__" to "")
(Resolved Security Issues)
Line 20: Line 20:
 
=== Keystone ===
 
=== Keystone ===
  
* [https://lists.launchpad.net/openstack/msg16282.html 2012-013]/[https://bugs.launchpad.net/bugs/cve/2012-3542 2012-3542] - Lack of authorization for adding users to tenants (Critical)
+
* [https://lists.launchpad.net/openstack/msg16282.html OSSA-2012-013]/[https://bugs.launchpad.net/bugs/cve/2012-3542 CVE-2012-3542] - Lack of authorization for adding users to tenants (Critical)
* [https://lists.launchpad.net/openstack/msg16659.html 2012-014]/[https://bugs.launchpad.net/bugs/cve/2012-4413 2012-4413] - Revoking a role does not affect existing tokens (High)
+
* [https://lists.launchpad.net/openstack/msg16659.html OSSA-2012-014]/[https://bugs.launchpad.net/bugs/cve/2012-4413 CVE-2012-4413] - Revoking a role does not affect existing tokens (High)
  
 
=== Horizon ===
 
=== Horizon ===
  
* [https://lists.launchpad.net/openstack/msg16278.html 2012-012]/[https://bugs.launchpad.net/bugs/cve/2012-3540 2012-3540] - Open redirect through 'next' parameter (Medium)
+
* [https://lists.launchpad.net/openstack/msg16278.html OSSA-2012-012]/[https://bugs.launchpad.net/bugs/cve/2012-3540 CVE-2012-3540] - Open redirect through 'next' parameter (Medium)
  
 
== Known Issues and Limitations ==
 
== Known Issues and Limitations ==

Revision as of 13:31, 21 February 2014

Release Notes, 2012.1.3

The 2012.1.3 release is an Essex bugfix update for Nova, Keystone and Horizon. No further official Essex releases of these projects are planned.

The bugfixes contained in this release were backported from the development branches into a stable branch. The release is intended to be a relatively risk free update with no intentional regressions or API changes.

Bugs Fixed

In total, 30 launchpad bugs are fixed by this update.

Resolved Security Issues

Keystone

Horizon

Known Issues and Limitations

Nova

Glance

A further release of Glance may be announced to resolve this issue with migrating from Diablo to Essex: