TEMP-1111689-27EE99

NameTEMP-1111689-27EE99
DescriptionOSSN-0094
SourceAutomatically generated temporary name. Not for external reference.
Debian Bugs1111689, 1111692

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
nova (PTS)bullseye2:22.0.1-2+deb11u1vulnerable
bullseye (security)2:22.4.0-1~deb11u5vulnerable
bookworm, bookworm (security)2:26.2.2-1~deb12u3vulnerable
trixie2:31.0.0-6vulnerable
forky2:31.0.0-7fixed
sid2:32.0.0-1fixed
watcher (PTS)bullseye5.0.0-1vulnerable
bookworm9.0.0-2vulnerable
trixie14.0.0-1vulnerable
forky14.0.0-3fixed
sid15.0.0-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
novasource(unstable)2:31.0.0-71111689
watchersource(unstable)14.0.0-31111692

Notes

[trixie] - nova <no-dsa> (Will be fixed via point release)
[bookworm] - nova <no-dsa> (Will be fixed via point release)
[trixie] - watcher <no-dsa> (Will be fixed via point release)
[bookworm] - watcher <no-dsa> (Will be fixed via point release)
https://wiki.openstack.org/wiki/OSSN/OSSN-0094
https://bugs.launchpad.net/nova/+bug/2112187
The swap volume, live migration and all Watcher APIs are admin only so with
default policy is only possible to create the inconsistent state described in
the OSSN-0094 if one has admin rights on the relevant OpenStack project.

Search for package or bug name: Reporting problems