[ubuntu/mantic-proposed] cinder 2:22.0.0-0ubuntu4 (Accepted)
Corey Bryant
corey.bryant at canonical.com
Wed May 31 16:06:16 UTC 2023
cinder (2:22.0.0-0ubuntu4) mantic; urgency=medium
* SECURITY UPDATE: Unauthorized File Access (LP: #2021980)
- debian/patches/CVE-2023-2088-1.patch: Reject unsafe delete
attachment calls.
- debian/patches/CVE-2023-2088-2.patch: Doc: Improve service token.
- CVE-2023-2088
Date: Fri, 26 May 2023 16:16:03 -0400
Changed-By: Corey Bryant <corey.bryant at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/cinder/2:22.0.0-0ubuntu4
-------------- next part --------------
Format: 1.8
Date: Fri, 26 May 2023 16:16:03 -0400
Source: cinder
Built-For-Profiles: noudeb
Architecture: source
Version: 2:22.0.0-0ubuntu4
Distribution: mantic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Corey Bryant <corey.bryant at canonical.com>
Launchpad-Bugs-Fixed: 2021980
Changes:
cinder (2:22.0.0-0ubuntu4) mantic; urgency=medium
.
* SECURITY UPDATE: Unauthorized File Access (LP: #2021980)
- debian/patches/CVE-2023-2088-1.patch: Reject unsafe delete
attachment calls.
- debian/patches/CVE-2023-2088-2.patch: Doc: Improve service token.
- CVE-2023-2088
Checksums-Sha1:
2a7297bb35eaf7cf4d4b83b3c556e4732580bb9c 5096 cinder_22.0.0-0ubuntu4.dsc
98c5bd5e9823f960519ff1cf5f60bf64c886958e 6209934 cinder_22.0.0.orig.tar.gz
4131c9ff7d0086eaf584b531df49a3810fc6fdc1 67284 cinder_22.0.0-0ubuntu4.debian.tar.xz
5255a0a939f6d9885ab0efa386964be17ef5835a 9146 cinder_22.0.0-0ubuntu4_source.buildinfo
Checksums-Sha256:
1ce0ecf3455af2257ef7bb82e570020f84dd66f0769426bdf3b07331892cadc2 5096 cinder_22.0.0-0ubuntu4.dsc
5116f56061a889c79d5e8a355486958920ed6363d47f8e2a41844e4f7fc542eb 6209934 cinder_22.0.0.orig.tar.gz
fa2816a4180f7b921b08beb6550b772203d6f4fd473285766f7f61dded1c2ddf 67284 cinder_22.0.0-0ubuntu4.debian.tar.xz
29847019cb56670969fd2c1b88c0a538bfbf44f571a0868ceb961926d0f4fb42 9146 cinder_22.0.0-0ubuntu4_source.buildinfo
Files:
dfd1080fa31c657ebaaf4e49e19d4947 5096 net extra cinder_22.0.0-0ubuntu4.dsc
8e6495c9b60d3d60ab4157884b737176 6209934 net extra cinder_22.0.0.orig.tar.gz
e101182d2bb5f5f133e0729e842a5b4c 67284 net extra cinder_22.0.0-0ubuntu4.debian.tar.xz
8ca716329fc3490d1e395e0a230f7093 9146 net extra cinder_22.0.0-0ubuntu4_source.buildinfo
Original-Maintainer: Chuck Short <zulcss at ubuntu.com>
More information about the mantic-changes
mailing list