Jump to: navigation, search

Difference between revisions of "ReleaseNotes/2014.1.2"

(Known Issues and Limitations)
(OpenStack Identity (Keystone))
Line 13: Line 13:
  
 
=== OpenStack Identity (Keystone) ===
 
=== OpenStack Identity (Keystone) ===
 +
* [http://lists.openstack.org/pipermail/openstack-announce/2014-June/000240.html OSSA 2014-018] / [https://launchpad.net/bugs/1324592 CVE-2014-3476] - Keystone privilege escalation through trust chained delegation
 +
* [http://lists.openstack.org/pipermail/openstack-announce/2014-July/000248.html OSSA 2014-022] / [https://launchpad.net/bugs/1331912 CVE-2014-3520] - Keystone V2 trusts privilege escalation through user supplied project id
  
 
=== OpenStack Orchestration (Heat) ===
 
=== OpenStack Orchestration (Heat) ===

Revision as of 23:08, 8 August 2014

Release Notes, 2014.1.2

The 2014.1.2 release is a Icehouse bugfix update for OpenStack Compute (Nova), OpenStack Identity (Keystone), OpenStack Image Registry and Delivery Service (Glance), OpenStack Networking (Neutron), Openstack Database (Trove), OpenStack Block Storage (Cinder), OpenStack Dashboard (Horizon), OpenStack Orchestration (Heat) and OpenStack Telemetry (Ceilometer).

The bugfixes contained in this release were backported from the development branches into a stable branch. The release is intended to be a low risk update with no intentional regressions or API changes.

Resolved Security Issues

OpenStack Networking (Neutron)

OpenStack Identity (Keystone)

OpenStack Orchestration (Heat)

OpenStack Compute (Nova)

Bugs Fixed

Known Issues and Limitations

None