lp://staging/~james-page/nova/folsom-resync
- Get this branch:
- bzr branch lp://staging/~james-page/nova/folsom-resync
Branch merges
- Openstack Ubuntu Testers: Pending requested
-
Diff: 922 lines (+887/-0)4 files modifieddebian/changelog (+31/-0)
debian/patches/CVE-2013-0335.patch (+378/-0)
debian/patches/CVE-2013-1838.patch (+476/-0)
debian/patches/series (+2/-0)
Related bugs
Bug #1125378: [OSSA-2013-006] VNC proxy can be made to connect to wrong VM | High | Fix Released | |
Bug #1125468: [OSSA 2013-008] DOS by allocating all fixed ips | High | Fix Released |
Related blueprints
Branch information
Recent revisions
- 479. By James Page
-
* Re-sync with latest security updates.
* SECURITY UPDATE: fix denial of service via fixed IPs when using extensions
- debian/patches/ CVE-2013- 1838.patch: add explicit quota for fixed IP
- CVE-2013-1838
* SECURITY UPDATE: fix VNC token validation
- debian/patches/ CVE-2013- 0335.patch: force console auth service to flush
all tokens associated with an instance when it is deleted
- CVE-2013-0335
* SECURITY UPDATE: fix denial of service
- CVE-2013-1664.patch: Add a new utils.safe_ minidom_ parse_string function
and update external API facing Nova modules to use it
- CVE-2013-1664
* SECURITY UPDATE: fix denial of service via fixed IPs when using extensions
- debian/patches/ CVE-2013- 1838.patch: add explicit quota for fixed IP
- CVE-2013-1838
- LP: #1125468
* SECURITY UPDATE: fix VNC token validation
- debian/patches/ CVE-2013- 0335.patch: force console auth service to flush
all tokens associated with an instance when it is deleted
- CVE-2013-0335
- LP: #1125378 - 472. By Adam Gandelman
-
* Resynchronize with stable/folsom (e76848a0):
- [ded0473] deletes fail when instance in RESIZED (LP: #1056601)
- [d015be5] libvirt: cannot detach volume from stopped domain (LP: #1057730)
- [d5888f1] Resizing a Xen instance with attached volumes fails
(LP: #1028092)
- [fb88827] resize leave leftover libvirt configs (LP: #1015731)
- [5ccd691] nova-network cannot re-generate MAC address if collision happen
(LP: #1059366)
- [e3d7f8c] After folsom upgrade, instances can no longer access existing
volumes. (LP: #1065702) - 470. By Adam Gandelman
-
* Resynchronize with stable/folsom (804f858b):
- [804f858] Jenkins jobs fail because of incompatibility between sqlalchemy-
migrate and the newest sqlalchemy-0.8.0b1 (LP: #1073569)
- [f67a5f9] block device mappings for deleted instances are leaked
(LP: #1069099)
- [32d8722] volume and snapshot IDs do not correctly map to UUIDs after
folsom upgrade (LP: #1065785)
- [9613643] Xenserver cannot boot vm_mode=xen type images (LP: #1055431)
- [863c767] Cloudpipe extension xml serialization doesn't return the
instance(s) data (LP: #1056242)
- [724adcf] deleting security group does not mark rules as deleted
(LP: #1056380)
- [84a996c] IP Protocol for security group should be returned in lower case
to be compliant with the ec2 api (LP: #1057196)
- [e1ed06a] db tests fail with sqlalchemy 0.7.4 (LP: #1057145)
- [bddb06d] Fail to boot raw image on XenServer (LP: #1055413)
- [d4d1665] Add SIGPIPE handler to subprocess execution in rootwrap and
utils.execute (LP: #1053364)
- [0af4dd0] libvirt: concurrent detach_volume and terminate fails
(LP: #1057719)
- [ebbfa9e] Instances in vm state DELETED are preventing compute restart
(LP: #1053441)
- [db516a2] ComputeManager does not provide block_device_info on destroy
call in revert_resize (LP: #1056285)
- [4223ebf] Set defaultbranch in .gitreview to stable/folsom
- [eee4dbb] do_refresh_security_ group_rules in nova.virt.firewall is very
slow (LP: #1062314)
- [b7e509a] Set read_deleted='yes' for instance_id_mappings.
- [9e20735] Tests fail on 32bit machines (_get_hash_str is platform
dependent) (LP: #1050359)
Branch metadata
- Branch format:
- Branch format 7
- Repository format:
- Bazaar repository format 2a (needs bzr 1.16 or later)