[Bug 1955556] Re: Javascript libraries with vulnerabilities

2022-02-11 Thread Balazs Gibizer
https://bugs.launchpad.net/horizon/+bug/1960489 got duplicated to this
bug. In that bug I listed 4 CVEs where, based on the CVE description,
the issues only fixed in JQuery >= 3 (and 3.5 in some cases). This bug
is marked as Invalid from upstream perspective stating that "From an
upstream OpenStack perspective, we don't mandate use of vulnerable
versions of dependencies, as the suggested version ranges in the
requirements.txt you linked can confirm." But upstream Horizon do states
JQuery < 2 which means we do mandate impacted JQuery versions. I'm
marking this as New again to get attention to this new fact.

** Changed in: horizon
   Status: Invalid => New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/196

Title:
  Javascript libraries with vulnerabilities

To manage notifications about this bug go to:
https://bugs.launchpad.net/horizon/+bug/196/+subscriptions


-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1888237] Re: nova-next job fails as novnc service fails with TypeError: _wrap_socket() argument 1 must be _socket.socket, not GreenSSLSocket

2020-09-17 Thread Balazs Gibizer
** Changed in: nova
   Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1888237

Title:
  nova-next job fails as novnc service fails with TypeError:
  _wrap_socket() argument 1 must be _socket.socket, not GreenSSLSocket

To manage notifications about this bug go to:
https://bugs.launchpad.net/nova/+bug/1888237/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1834045] Re: Live-migration double binding doesn't work with OVN

2020-04-30 Thread Balazs Gibizer
Do we need anything else top of https://review.opendev.org/673803 to
make live migration with OVN work? Reading the commit message for the
patch it feels that the issue is resolved. Please put this back to New
if you disagree.

** Changed in: nova
   Status: New => Incomplete

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1834045

Title:
  Live-migration double binding doesn't work with OVN

To manage notifications about this bug go to:
https://bugs.launchpad.net/networking-ovn/+bug/1834045/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1834450] [NEW] placement wsgi service does not support osprofiler

2019-06-27 Thread Balazs Gibizer
Public bug reported:

Even if the os profiler config is added in the nova.conf the placement
wsgi related operations do not show up in the generated trace.

The placement.api service in removed from nova in stein. So for the
stein and master issue is tracked in the placement story [1].

[1]https://storyboard.openstack.org/#!/story/2005842

** Affects: nova
 Importance: Undecided
 Status: New

** Affects: nova/pike
 Importance: Undecided
 Status: New

** Affects: nova/queens
 Importance: Undecided
 Status: New

** Affects: nova/rocky
 Importance: Undecided
 Assignee: Balazs Gibizer (balazs-gibizer)
 Status: In Progress


** Tags: placement

** Tags added: placement

** Project changed: nova => nova (Ubuntu)

** Also affects: nova
   Importance: Undecided
   Status: New

** No longer affects: nova (Ubuntu)

** Also affects: nova/rocky
   Importance: Undecided
   Status: New

** Also affects: nova/pike
   Importance: Undecided
   Status: New

** Also affects: nova/queens
   Importance: Undecided
   Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1834450

Title:
  placement wsgi service does not support osprofiler

To manage notifications about this bug go to:
https://bugs.launchpad.net/nova/+bug/1834450/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs