[Bug 1823200] Re: Improper handling of ScaleIO backend credentials

2020-11-19 Thread Brian Rosmaita
I want to add an addendum to comment #55.  That roll-out plan worked
fine, except that we should have used the same Change-Id on all the
cinder patches, and same Change-Id on all the os-brick patches.  This
would have made it easier for people looking to see which branches
contained the fix, because they would have been connected in the way
backports usually are.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1823200

Title:
  Improper handling of ScaleIO backend credentials

To manage notifications about this bug go to:
https://bugs.launchpad.net/cinder/+bug/1823200/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1865754] Re: tripleo-ci-centos-8-scenario001-standalone tempest-conf fails 500 PUT http://192.168.24.1:9292/v2/images/ RADOS invalid argument

2020-09-08 Thread Brian Rosmaita
Change-Id Ie8011fc83bc41edd2768ade6d42d737b4598ca2d added a pretty
heavy-duty binary dependency to os-brick.  In the meantime, we have
verified that use of the '[global]' section of the config file goes back
at least to hammer, which would be in the openstack liberty time-frame:

https://docs.ceph.com/docs/hammer/rados/configuration/mon-config-ref/

So I think we need to revert commit
3e831480c29c07128f36ae67c44c25177b3d9f36 from master and replace it with
a change that unconditionally adds the '[global]' section to the
generated config file, and then backport both changes to
stable/victoria.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1865754

Title:
  tripleo-ci-centos-8-scenario001-standalone tempest-conf fails 500 PUT
  http://192.168.24.1:9292/v2/images/ RADOS invalid argument

To manage notifications about this bug go to:
https://bugs.launchpad.net/charm-ceph-rbd-mirror/+bug/1865754/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1302976] Re: Install the Image Service in OpenStack Installation Guide for Ubuntu 12.04 (LTS)  - icehouse - Configuration error

2019-06-06 Thread Brian Rosmaita
Looks like this was fixed via documentation.  Config option no longer
exists in stable branches.

** Changed in: glance
   Status: New => Invalid

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1302976

Title:
  Install the Image Service in OpenStack Installation Guide for Ubuntu
  12.04 (LTS)  - icehouse - Configuration error

To manage notifications about this bug go to:
https://bugs.launchpad.net/glance/+bug/1302976/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

[Bug 1449062] Re: [OSSA 2016-012] qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

2016-10-18 Thread Brian Rosmaita
Fix released to all stable branches

** Changed in: glance
   Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1449062

Title:
  [OSSA 2016-012] qemu-img calls need to be restricted by ulimit
  (CVE-2015-5162)

To manage notifications about this bug go to:
https://bugs.launchpad.net/cinder/+bug/1449062/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 1449062] Re: [OSSA 2016-012] qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

2016-10-18 Thread Brian Rosmaita
See comment #90 for glance fix to stable/liberty

** Changed in: glance/liberty
   Status: In Progress => Fix Committed

** Changed in: glance/liberty
   Status: Fix Committed => Fix Released

** Changed in: glance/mitaka
   Status: Fix Committed => Fix Released

** Changed in: glance/newton
   Status: Fix Committed => Fix Released

** Changed in: glance/newton
Milestone: newton-rc2 => None

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1449062

Title:
  [OSSA 2016-012] qemu-img calls need to be restricted by ulimit
  (CVE-2015-5162)

To manage notifications about this bug go to:
https://bugs.launchpad.net/cinder/+bug/1449062/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs


[Bug 1449062] Re: qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

2016-09-27 Thread Brian Rosmaita
** Tags added: newton-rc-potential

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1449062

Title:
  qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

To manage notifications about this bug go to:
https://bugs.launchpad.net/cinder/+bug/1449062/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs