openstack-announce
Thread
Date
Later messages
Messages by Date
2014/10/28
[openstack-announce] [OSSA 2014-038] Nova network DoS through API filtering (CVE-2014-3708)
Tristan Cacqueray
2014/10/24
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 17 – 24)
Stefano Maffulli
2014/10/24
[openstack-announce] [python-keystoneclient] Release of python-keystoneclient 0.11.2
Morgan Fainberg
2014/10/21
[openstack-announce] [OSSA 2014-037] Nova VMware instance in resize state may leak (CVE-2014-8333)
Tristan Cacqueray
2014/10/17
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 10 – 17)
Stefano Maffulli
2014/10/17
[openstack-announce] [Elections] End of the Election Cycle - Results of PTL & TC Elections
Anita Kuno
2014/10/16
[openstack-announce] OpenStack 2014.2 ("Juno") is released !
Thierry Carrez
2014/10/15
[openstack-announce] [OSSA 2014-036] Potential leak of passwords into log files (CVE-2014-7230, CVE-2014-7231)
Tristan Cacqueray
2014/10/14
[openstack-announce] [OSSA 2014-035] Nova VMware driver may connect VNC to another tenant's console (CVE-2014-8750)
Jeremy Stanley
2014/10/10
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 3 - 10)
Stefano Maffulli
2014/10/09
[openstack-announce] [OSSA 2014-034] Swift metadata constraints are not correctly enforced (CVE-2014-7960)
Thierry Carrez
2014/10/03
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 26 - Oct 3)
Stefano Maffulli
2014/10/02
[openstack-announce] OpenStack 2014.1.3 released
Adam Gandelman
2014/10/02
[openstack-announce] [OSSA 2014-033] Cinder-volume host data leak to vm instance (CVE-2014-3641)
Tristan Cacqueray
2014/10/02
[openstack-announce] [OSSA 2014-032] Nova VMware driver still leaks rescued images (CVE-2014-3608)
Tristan Cacqueray
2014/09/29
[openstack-announce] OpenStack Havana End of Upstream Support Lifetime
Jeremy Stanley
2014/09/29
[openstack-announce] [OSSA 2014-031] Admin-only network attributes may be reset to defaults by non-privileged users (CVE-2014-6414)
Grant Murphy
2014/09/29
[openstack-announce] [OpenStack] [python-cinderclient] Release of python-cinderclient 1.1.1
John Griffith
2014/09/26
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 19 – 26)
Stefano Maffulli
2014/09/25
[openstack-announce] [OSSA 2014-030] TLS cert verification option not honoured in paste configs (CVE-2014-7144)
Grant Murphy
2014/09/25
[openstack-announce] python-heatclient 0.2.12 released
Steve Baker
2014/09/25
[openstack-announce] [OpenStack][keystonemiddleware] Release of keystonemiddleware 1.2.0
Morgan Fainberg
2014/09/24
[openstack-announce] [OpenStack][python-keystoneclient] Release of python-keystoneclient 0.11.1
Morgan Fainberg
2014/09/23
[openstack-announce] OpenStack 2013.2.4 released
Alan Pevec
2014/09/19
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 12 – 19)
Stefano Maffulli
2014/09/19
[openstack-announce] python-heatclient 0.2.11 released
Steve Baker
2014/09/16
[openstack-announce] [OSSA 2014-029] Configuration option leak through Keystone catalog (CVE-2014-3621)
Tristan Cacqueray
2014/09/14
[openstack-announce] [OpenStack] [python-cinderclient] Release of python-cinderclient 1.1.0
John Griffith
2014/09/12
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 5 – 12)
Stefano Maffulli
2014/09/05
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 29 – Sep 5)
Stefano Maffulli
2014/09/01
[openstack-announce] [Swift] Swift 2.1.0 released
John Dickinson
2014/08/29
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 22 – 29)
Stefano Maffulli
2014/08/29
[openstack-announce] heat-cfntools 1.2.8 released
Steve Baker
2014/08/22
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 15 – 22)
Stefano Maffulli
2014/08/21
[openstack-announce] [OSSA 2014-028] Glance store DoS through disk space exhaustion (CVE-2014-5356)
Tristan Cacqueray
2014/08/19
[openstack-announce] [OSSA 2014-027] Persistent XSS in Horizon Host Aggregates interface (CVE-2014-3594)
Tristan Cacqueray
2014/08/15
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 8 - 15)
Stefano Maffulli
2014/08/15
[openstack-announce] [OSSA 2014-026] Multiple vulnerabilities in Keystone revocation events (CVE-2014-5251, CVE-2014-5252, CVE-2014-5253)
Tristan Cacqueray
2014/08/08
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 1 – 8)
Stefano Maffulli
2014/08/08
Re: [openstack-announce] Keystone 2014.1.2.1 released
Thierry Carrez
2014/08/08
[openstack-announce] Keystone 2014.1.2
Chuck Short
2014/08/07
[openstack-announce] OpenStack 2014.1.2 released
Chuck Short
2014/08/01
[openstack-announce] OpenStack Community Weekly Newsletter (July 25 - Aug 1)
Stefano Maffulli
2014/07/25
[openstack-announce] OpenStack Community Weekly Newsletter (July 18 – 25)
Stefano Maffulli
2014/07/24
[openstack-announce] Juno-2 development milestone available
Russell Bryant
2014/07/22
[openstack-announce] python-swiftclient 2.2.0 release
John Dickinson
2014/07/21
[openstack-announce] [OSSA 2014-025] Denial of Service in Neutron allowed address pair (CVE-2014-3555)
Tristan Cacqueray
2014/07/18
[openstack-announce] OpenStack Community Weekly Newsletter (July 11 – 18)
Stefano Maffulli
2014/07/17
[openstack-announce] [OSSA 2014-024] Use of non-constant time comparison operation (CVE-2014-3517)
Grant Murphy
2014/07/08
[openstack-announce] [OSSA 2014-023] Multiple XSS vulnerabilities in Horizon (CVE-2014-3473, CVE-2014-3474, and CVE-2014-3475)
Tristan Cacqueray
2014/07/08
[openstack-announce] Swift 2.0.0 has been released and includes support for storage policies
John Dickinson
2014/07/02
[openstack-announce] [OSSA 2014-022] Keystone V2 trusts privilege escalation through user supplied project id (CVE-2014-3520)
Tristan Cacqueray
2014/06/27
[openstack-announce] OpenStack Community Weekly Newsletter (June 20 – 27)
Stefano Maffulli
2014/06/27
[openstack-announce] python-heatclient 0.2.10 released
Steve Baker
2014/06/25
[openstack-announce] [OSSA 2014-021] User token leak to message queue in pyCADF notifier middleware (CVE-2014-4615)
Tristan Cacqueray
2014/06/20
[openstack-announce] OpenStack Community Weekly Newsletter (June 13 - 20)
Stefano Maffulli
2014/06/19
[openstack-announce] [OSSA 2014-020] XSS in Swift requests through WWW-Authenticate header (CVE-2014-3497)
Tristan Cacqueray
2014/06/18
[openstack-announce] [OSSA 2014-019] Neutron L3-agent DoS through IPv6 subnet (CVE-2014-4167)
Tristan Cacqueray
2014/06/13
[openstack-announce] OpenStack Community Weekly Newsletter (June 6 – 13)
Stefano Maffulli
2014/06/12
[openstack-announce] [OSSA 2014-018] Keystone privilege escalation through trust chained delegation (CVE-2014-3476)
Tristan Cacqueray
2014/06/12
[openstack-announce] Juno-1 development milestone available
Thierry Carrez
2014/06/09
[openstack-announce] OpenStack 2014.1.1 released
Alan Pevec
2014/06/06
[openstack-announce] OpenStack Community Weekly Newsletter (May 30 – June 6)
Stefano Maffulli
2014/05/30
[openstack-announce] OpenStack Community Weekly Newsletter (May 23 – 30)
Stefano Maffulli
2014/05/29
[openstack-announce] [OSSA 2014-017] Nova VMWare driver leaks rescued images (CVE-2014-2573)
Jeremy Stanley
2014/05/23
[openstack-announce] New release of python-swiftclient (now with py3 support)
John Dickinson
2014/05/23
[openstack-announce] [OSSA 2014-016] Heat template URL information leakage (CVE-2014-3801)
Tristan Cacqueray
2014/05/21
[openstack-announce] [OSSA 2014-015] Keystone user and group id mismatch (CVE-2014-0204)
Tristan Cacqueray
2014/05/02
[openstack-announce] OpenStack Community Weekly Newsletter (Apr 25 – May 2)
Stefano Maffulli
2014/04/25
[openstack-announce] Results of the TC Election
Anita Kuno
2014/04/25
[openstack-announce] OpenStack Community Weekly Newsletter (Apr 18 – 25)
Stefano Maffulli
2014/04/22
[openstack-announce] [OSSA 2014-014] Neutron security groups bypass through invalid CIDR (CVE-2014-0187)
Tristan Cacqueray
2014/04/18
[openstack-announce] OpenStack Community Weekly Newsletter (Apr 11 – 18)
Stefano Maffulli
2014/04/17
[openstack-announce] OpenStack 2014.1 ("Icehouse") is released !
Thierry Carrez
2014/04/14
[openstack-announce] python-heatclient 0.2.9 released
Steve Baker
2014/04/11
[openstack-announce] PTL Election Conclusion and Results
Anita Kuno
2014/04/11
[openstack-announce] OpenStack Community Weekly Newsletter (Apr 4 – 11)
Stefano Maffulli
2014/04/10
[openstack-announce] [OSSA 2014-013] Keystone DoS through V3 API authentication chaining (CVE-2014-2828)
Tristan Cacqueray
2014/04/10
[openstack-announce] [OSSA 2014-012] Remote code execution in Glance Sheepdog backend (CVE-2014-0162)
Tristan Cacqueray
2014/04/09
[openstack-announce] [OSSA 2014-011] RBAC policy not properly enforced in Nova EC2 API (CVE-2014-0167)
Tristan Cacqueray
2014/04/08
[openstack-announce] [OSSA 2014-010] XSS in Horizon orchestration dashboard (CVE-2014-0157)
Tristan Cacqueray
2014/04/05
[openstack-announce] OpenStack Community Weekly Newsletter (Mar 28 – Apr 4)
Stefano Maffulli
2014/04/03
[openstack-announce] OpenStack 2013.2.3 released
Adam Gandelman
2014/04/02
[openstack-announce] Old stable/grizzly branches removed as of March 30, 2014
Jeremy Stanley
2014/03/28
[openstack-announce] OpenStack Community Weekly Newsletter (Mar 21 – 28)
Stefano Maffulli
2014/03/27
[openstack-announce] [OSSA 2014-009] Nova host data leak to vm instance in rescue mode (CVE-2014-0134)
Tristan Cacqueray
2014/03/27
[openstack-announce] [OSSA 2014-008] Routers can be cross plugged by other tenants (CVE-2014-0056)
Grant Murphy
2014/03/27
[openstack-announce] [OSSA 2014-007] Potential context confusion in Keystone middleware (CVE-2014-0105)
Tristan Cacqueray
2014/03/21
[openstack-announce] OpenStack Community Weekly Newsletter (Mar 14 – 21)
Stefano Maffulli
2014/03/20
[openstack-announce] OpenStack 2013.1.5 released
Alan Pevec
2014/03/07
[openstack-announce] python-novaclient 2.17.0 released
Russell Bryant
2014/03/06
[openstack-announce] Icehouse-3 development milestone available
Thierry Carrez
2014/03/04
[openstack-announce] [OSSA 2014-006] Trustee token revocation does not work with memcache backend (CVE-2014-2237)
Tristan Cacqueray
2014/03/03
[openstack-announce] [Swift] Swift 1.13.0 released
John Dickinson
2014/03/03
[openstack-announce] python-heatclient 0.2.8 released
Steve Baker
2014/02/28
[openstack-announce] OpenStack Community Weekly Newsletter (Feb 14 – 28)
Stefano Maffulli
2014/02/26
[openstack-announce] python-novaclient 2.16.0 released
Russell Bryant
2014/02/19
[openstack-announce] python-heatclient 0.2.7 released
Steve Baker
2014/02/17
[openstack-announce] [OSSA 2014-005] Missing SSL certificate check in Python Swift client (CVE-2013-6396)
Tristan Cacqueray
2014/02/14
[openstack-announce] OpenStack Community Weekly Newsletter (Feb 7 - 14)
Stefano Maffulli
2014/02/14
[openstack-announce] python-swiftclient releases
John Dickinson
2014/02/13
[openstack-announce] OpenStack 2013.2.2 released
Alan Pevec
2014/02/12
[openstack-announce] [OSSA 2014-004] Glance Swift store backend password leak (CVE-2014-1948)
Jeremy Stanley
2014/02/07
[openstack-announce] OpenStack Community Weekly Newsletter (Jan 31 - Feb 7)
Stefano Maffulli
2014/02/05
[openstack-announce] [OpenStack-announce] python-cinderclient 1.0.8 released to PyPi
John Griffith
2014/01/31
[openstack-announce] OpenStack Community Weekly Newsletter (Jan 24 – 31)
Stefano Maffulli
2014/01/28
[openstack-announce] [Swift] release 1.12.0
John Dickinson
2014/01/24
[openstack-announce] OpenStack Community Weekly Newsletter (Jan 17 – 24)
Stefano Maffulli
2014/01/23
[openstack-announce] [OSSA 2014-003] Live migration can leak root disk into ephemeral storage (CVE-2013-7130)
Grant Murphy
2014/01/23
[openstack-announce] Icehouse-2 development milestone available
Thierry Carrez
2014/01/17
[openstack-announce] OpenStack Community Weekly Newsletter (Jan 10 – 17)
Stefano Maffulli
2014/01/17
[openstack-announce] [OSSA 2014-002] Swift TempURL timing attack (CVE-2014-0006)
Thierry Carrez
2014/01/13
[openstack-announce] [OSSA 2014-001] Nova live snapshots use an insecure local directory (CVE-2013-7048)
Thierry Carrez
2014/01/10
[openstack-announce] OpenStack Community Weekly Newsletter (Jan 3 – 10)
Stefano Maffulli
2014/01/03
[openstack-announce] OpenStack Community Weekly Newsletter (Jan 3 2014)
Stefano Maffulli
2013/12/27
[openstack-announce] OpenStack Community Weekly Newsletter (Dec 20 – 27)
Stefano Maffulli
2013/12/20
[openstack-announce] OpenStack Community Weekly Newsletter (Dec 13 – 20)
Stefano Maffulli
2013/12/18
[openstack-announce] [OSSA 2013-037] Nova compute DoS through ephemeral disk backing files (CVE-2013-6437)
Thierry Carrez
2013/12/16
[openstack-announce] OpenStack 2013.2.1 released
Alan Pevec
2013/12/16
Re: [openstack-announce] OpenStack Community Weekly Newsletter (Dec 6 – 13)
Stefano Maffulli
2013/12/16
Re: [openstack-announce] [openstack-community] OpenStack Community Weekly Newsletter (Dec 6 – 13)
Stefano Maffulli
2013/12/13
[openstack-announce] OpenStack Community Weekly Newsletter (Dec 6 – 13)
Stefano Maffulli
2013/12/12
[openstack-announce] [Swift] Release of Swift 1.11.0
John Dickinson
2013/12/11
[openstack-announce] [OSSA 2013-036] Insufficient sanitization of Instance Name in Horizon (CVE-2013-6858)
Jeremy Stanley
2013/12/11
[openstack-announce] [OSSA 2013-035] Heat ReST API doesn't respect tenant scoping (CVE-2013-6428)
Jeremy Stanley
2013/12/11
[openstack-announce] [OSSA 2013-034] Heat CFN policy rules not all enforced (CVE-2013-6426)
Jeremy Stanley
2013/12/11
[openstack-announce] [OSSA 2013-034] Heat CFN policy rules not all enforced (CVE-2013-6426)
Jeremy Stanley
2013/12/11
[openstack-announce] [OSSA 2013-033] Metadata queries from Neutron to Nova are not restricted by tenant (CVE-2013-6419)
Jeremy Stanley
2013/12/11
[openstack-announce] [OSSA 2013-032] Keystone trust circumvention through EC2-style tokens (CVE-2013-6391)
Jeremy Stanley
2013/12/06
[openstack-announce] OpenStack Community Weekly Newsletter (Nov 29 – Dec 6)
Stefano Maffulli
2013/12/05
[openstack-announce] Icehouse-1 development milestone available
Thierry Carrez
2013/11/29
[openstack-announce] OpenStack Community Weekly Newsletter (Nov 22 – 29)
Stefano Maffulli
2013/11/25
[openstack-announce] [OSSA 2013-031] Ceilometer DB2/MongoDB backend password leak (CVE-2013-6384)
Thierry Carrez
2013/11/22
[openstack-announce] OpenStack Community Weekly Newsletter (Nov 15 – 22)
Stefano Maffulli
2013/11/18
[openstack-announce] OpenStack Community Weekly Newsletter (Nov 1 – Nov 15)
Stefano Maffulli
2013/11/14
[openstack-announce] [OSSA 2013-030] XenAPI security groups not kept through migrate or resize (CVE-2013-4497)
Jeremy Stanley
2013/11/01
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 25 – Nov 1)
Stefano Maffulli
2013/10/31
[openstack-announce] [OSSA 2013-029] Potential Nova denial of service through compressed disk images (CVE-2013-4463, CVE-2013-4469)
Thierry Carrez
2013/10/30
[openstack-announce] [OSSA 2013-028] Unintentional role granting with Keystone LDAP backend (CVE-2013-4477)
Thierry Carrez
2013/10/25
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 18 - 25)
Stefano Maffulli
2013/10/23
[openstack-announce] heat-cfntools 1.2.6 released
Steve Baker
2013/10/22
[openstack-announce] [OSSA 2013-027] Glance image_download policy not enforced for cached images (CVE-2013-4428)
Thierry Carrez
2013/10/18
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 11 - 18)
Stefano Maffulli
2013/10/18
[openstack-announce] OpenStack 2013.1.4 released
Adam Gandelman
2013/10/18
[openstack-announce] Technical Committee - October 2013 election results
Thierry Carrez
2013/10/17
[openstack-announce] OpenStack 2013.2 ("Havana") is released !
Thierry Carrez
2013/10/11
[openstack-announce] OpenStack Community Weekly Newsletter (Oct 4 – 11)
Stefano Maffulli
2013/10/04
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 27 – Oct 4)
Stefano Maffulli
2013/10/04
[openstack-announce] September 2013 PTL elections - Final results
Anita Kuno
2013/09/27
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 20-27)
Stefano Maffulli
2013/09/27
[openstack-announce] python-heatclient 0.2.5 released
Steve Baker
2013/09/21
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 13-20)
Stefano Maffulli
2013/09/13
[openstack-announce] OpenStack Community Weekly Newsletter (Sep 6-13)
Stefano Maffulli
2013/09/12
[openstack-announce] [OSSA 2013-026] Potential denial of service on Nova when using Qpid (CVE-2013-4261)
Thierry Carrez
2013/09/11
[openstack-announce] [OSSA 2013-025] Token revocation failure using Keystone memcache/KVS backends (CVE-2013-4294)
Thierry Carrez
2013/09/06
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 30 – Sep 6)
Stefano Maffulli
2013/09/06
[openstack-announce] Havana-3 development milestone available
Thierry Carrez
2013/08/28
[openstack-announce] [OSSA 2013-024] Resource limit circumvention in Nova private flavors (CVE-2013-4278)
Thierry Carrez
2013/08/23
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 10-23)
Stefano Maffulli
2013/08/13
[openstack-announce] [Swift] Swift 1.9.1 released
John Dickinson
2013/08/09
[openstack-announce] OpenStack Community Weekly Newsletter (Aug 2-9)
Stefano Maffulli
2013/08/08
[openstack-announce] OpenStack 2013.1.3 released
Alan Pevec
2013/08/08
[openstack-announce] [OSSA 2013-023] Denial of Service using XML entities in Nova/Cinder extensions (CVE-2013-4179, CVE-2013-4202)
Thierry Carrez
2013/08/07
[openstack-announce] [Swift] Swift 1.9.9 RC available
John Dickinson
2013/08/07
[openstack-announce] [OSSA 2013-022] Swift Denial of Service using superfluous object tombstones (CVE-2013-4155)
Thierry Carrez
2013/08/07
[openstack-announce] [OSSA 2013-021] Cinder LVM volume driver does not support secure deletion (CVE-2013-4183)
Jeremy Stanley
2013/08/07
[openstack-announce] python-heatclient 0.2.4 released
Steve Baker
2013/08/07
[openstack-announce] heat-cfntools 1.2.5 released
Steve Baker
2013/08/06
[openstack-announce] [OSSA 2013-020] Denial of Service in Nova network source security groups (CVE-2013-4185)
Jeremy Stanley
2013/08/06
[openstack-announce] [OSSA 2013-019] Resource limit circumvention in Nova private flavors (CVE-2013-2256)
Jeremy Stanley
2013/08/06
[openstack-announce] python-novaclient 2.14.0 released
Russell Bryant
2013/08/02
[openstack-announce] OpenStack Community Weekly Newsletter (July 26 – Aug 2)
Stefano Maffulli
2013/07/30
[openstack-announce] [OSSA 2013-018] Missing SSL certificate check in Python glance client (CVE-2013-4111)
Thierry Carrez
2013/07/27
[openstack-announce] OpenStack Community Weekly Newsletter (July 19 – 26)
Stefano Maffulli
2013/07/19
[openstack-announce] OpenStack Community Weekly Newsletter (July 12 – 19)
Stefano Maffulli
2013/07/18
[openstack-announce] Havana-2 development milestone available
Thierry Carrez
2013/07/17
[openstack-announce] python-heatclient 0.2.3 released
Steve Baker
2013/07/12
[openstack-announce] OpenStack Community Weekly Newsletter (July 5 – 12)
Stefano Maffulli
2013/07/05
[openstack-announce] OpenStack Community Weekly Newsletter (June 28 - July 5)
Stefano Maffulli
2013/07/02
[openstack-announce] [Swift] Swift 1.9.0 released: global clusters and more
John Dickinson
2013/06/28
[openstack-announce] OpenStack Community Weekly Newsletter (June 21-28)
Stefano Maffulli
2013/06/19
[openstack-announce] [OSSA 2013-017] Issues in Keystone middleware memcache signing/encryption feature (CVE-2013-2166, CVE-2013-2167)
Thierry Carrez
Later messages