[ubuntu/natty-security] nova_2011.2-0ubuntu1.2_i386_translations.tar.gz, nova 2011.2-0ubuntu1.2 (Accepted)

Jamie Strandboge jamie at ubuntu.com
Tue Dec 13 16:03:42 UTC 2011


nova (2011.2-0ubuntu1.2) natty-security; urgency=low

  * SECURITY UPDATE: fix directory traversal during image registration via
    EC2 API and S3/RegisterImage
    - fix-traversal-via-image-register.patch: adjust nova/image/s3.py to
      use basename instead of absolute path
    - CVE-2011-XXXX

Date: Fri, 09 Dec 2011 06:55:10 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Soren Hansen <soren at ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/nova/2011.2-0ubuntu1.2
-------------- next part --------------
Format: 1.8
Date: Fri, 09 Dec 2011 06:55:10 -0600
Source: nova
Binary: python-nova nova-common nova-compute nova-scheduler nova-volume nova-ajax-console-proxy nova-api nova-network nova-objectstore nova-instancemonitor nova-doc
Architecture: source
Version: 2011.2-0ubuntu1.2
Distribution: natty-security
Urgency: low
Maintainer: Soren Hansen <soren at ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 nova-ajax-console-proxy - OpenStack Compute - Nova - AJAX console proxy
 nova-api   - OpenStack Compute - Nova - API frontend
 nova-common - OpenStack Compute - Nova - common files
 nova-compute - OpenStack Compute - Nova - compute node
 nova-doc   - OpenStack Compute - Nova - documetation
 nova-instancemonitor - Nova instance monitor
 nova-network - OpenStack Compute - Nova - Network thingamajig
 nova-objectstore - OpenStack Compute - Nova - object store
 nova-scheduler - OpenStack Compute - Nova - Scheduler
 nova-volume - OpenStack Compute - Nova - storage
 python-nova - OpenStack Compute - Nova - Python libraries
Changes: 
 nova (2011.2-0ubuntu1.2) natty-security; urgency=low
 .
   * SECURITY UPDATE: fix directory traversal during image registration via
     EC2 API and S3/RegisterImage
     - fix-traversal-via-image-register.patch: adjust nova/image/s3.py to
       use basename instead of absolute path
     - CVE-2011-XXXX
Checksums-Sha1: 
 c8fb97983a8d9a9a43aa1ffd1226339ef6de802f 2572 nova_2011.2-0ubuntu1.2.dsc
 7f5a404d63e1abfd396b4f2f6c9a1b88093308a8 14626 nova_2011.2-0ubuntu1.2.debian.tar.gz
Checksums-Sha256: 
 a3a9a638b2449fc1c427a8794cf24ab77a254085e65135e960e60d426212c091 2572 nova_2011.2-0ubuntu1.2.dsc
 89bd595323da468719ac5f3e381229b1c0cfb3d6b85cdae272b7957d1e070a4d 14626 nova_2011.2-0ubuntu1.2.debian.tar.gz
Files: 
 547e85392b8bed10caa1748434bdb13b 2572 net extra nova_2011.2-0ubuntu1.2.dsc
 cde9ee87facf39fbde333603344dd3d7 14626 net extra nova_2011.2-0ubuntu1.2.debian.tar.gz


More information about the Natty-changes mailing list