Oval Definition:oval:org.opensuse.security:def:83870
Revision Date:2019-07-17Version:1
Title:Security update for ardana and crowbar (Important)
Description:

This update for ardana and crowbar fixes the following issues:

- Restrict rootwrap directories for cinder (bsc#1132542) - Change Cinder default log level from DEBUG to INFO (SCRD-7132) - Remove configuration from migration (bsc#1126391) - Configurable innodb flush options (SCRD-7496) - Secure designate's rootwrap files (bsc#1132542) - specify rootwrap config file in designate sudoer (bsc#1132542) - Update Designate log threshold from DEBUG to INFO (SCRD-8459) - Change Glance default log level from DEBUG to INFO (SCRD-8592) - Change Heat default log level from DEBUG to INFO (SCRD-7132) - Fix Horizon missing create snapshot action for users (bsc#1130593) - Don't set external-name in ardana-ci models (SCRD-7471) - Fix fail-over/-back behavior of haproxy for galera (bsc#1122875) - Update swift endpoints from keystone-reconfigure.yml if needed (SCRD-8703) - Change Magnum default log level from DEFAULT to INFO (SCRD-7132) - Rip out vertica related code (SCRD-9031) - Tighten neutron sudoers to only execute rootwrap (bsc#1132542) - Change Neutron default log level from DEBUG to INFO (SCRD-7132) - SCRD-9031 Change permitted nova-rootwrap config file pattern (bsc#1132542) - specify rootwrap config file in nova sudoer (bsc#1132542) - Change Nova default log level from DEBUG to INFO (SCRD-7132) - Stop installing a sudoers root escalator (SCRD-9031) - Change Octavia default log level from DEBUG to INFO (SCRD-7132) - Increase number of connect retries (SCRD-7496) - UDEV rules for multi-port nics (SCRD-8329) - Ensure that the ceph group exists (SCRD-8347) - Disable test_create_health_monitor_with_scenarios tempest (SOC-9176) - Make --os-test-timeout configurable and increase default (SCRD-7496) - Disable TestVolumeBootPattern.test_volume_boot_pattern (SCRD-9015) - Increase and make timeout values configurable (SCRD-7496) - Configure heat boot config template path (SCRD-7496) - Fix typo on ceilometer filter (SCRD-7496) - barclamp: Fix setting MTU on networks using a bridge - Fix order of values in nodes piechart - Ignore CVE-2019-11068 during Travis (SOC-9262) - Fix cloud-mkcloud9-job-backup-restore (SCRD-7126) - Update suse-branding.patch with correct links for documentation (SCRD-8294) - pacemaker: add failure nodes to sync fail message (bsc#1083721) - update suse-branding.patch (SOC-9297) - pacemaker: wait more for founder if SBD is configured (SCRD-8462) - pacemaker: don't check cluster members on founder (SCRD-8462) - database: Make wsrep_provider_options configurable (fate#327745) - database: Raise and align promote/demote timeouts (bsc#1131791) - mysql: improve galera HA setup (bsc#1122875) - Update suse-branding.patch with correct links for documentation (SCRD-8294) - neutron: Fix the rest of the keystone related settings for LBaaS - neutron: properly define neutron lbaas region (bsc#1128753) - CLM - update MariaDB manually (bsc#1132852, SOC-9022) - update MariaDB manually (bsc#1132852, SOC-9022) - SOC8 alarm table restructure ((SCRD-7710, bsc#1124170) - Fix bsc#1118003 - add deprecation decision tree (shrub) (SCRD-8530) - add cert section (SCRD-5542) - grammar; make migration pairing more explicit (SCRD-7595) - Remove whitespace on top of login page (SCRD-7142) - Revert alert and form colors to default SCRD-6919 - Change active sidebar section text white SCRD-6919 - Updated the openstack-monasca-agent-sudoers file (bsc#1132542) - Don't restart neutron-ovs-cleanup on RPM update (bsc#1132860) - Fix KeyError in OVS firewall (bsc#1131712, CVE-2019-10876) - update to 1.11.20 (bsc#124991, CVE-2019-6975): - Memory exhaustion in ``django.utils.numberformat.format()`` - Include ops-console logs if exist (bsc-1126912) - Add a sed pattern to censor passwords from servers.yml (bsc#1105559) - Show the status file of crowbar upgrade (if it exists)
Family:unixClass:patch
Status:Reference(s):1083721
1105559
1118003
1120932
1122875
1124170
1126391
1128753
1130593
1131712
1131791
1132542
1132852
1132860
124991
CVE-2018-14574
CVE-2019-10876
CVE-2019-11068
CVE-2019-3498
CVE-2019-6975
SUSE-SU-2019:1862-1
Platform(s):SUSE OpenStack Cloud 8
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ardana-ansible-8.0+git.1553878455.7439e04-3.61.1 is installed
  • OR ardana-barbican-8.0+git.1534266594.8136db7-4.30.1 is installed
  • OR ardana-cassandra-8.0+git.1534266612.44dcb20-3.12.1 is installed
  • OR ardana-ceilometer-8.0+git.1534266629.0bb5d54-3.9.1 is installed
  • OR ardana-cinder-8.0+git.1558619942.6bd075c-3.36.1 is installed
  • OR ardana-cluster-8.0+git.1534266734.ec4822f-3.33.1 is installed
  • OR ardana-cobbler-8.0+git.1550694449.df88054-3.38.1 is installed
  • OR ardana-db-8.0+git.1555341117.d812d88-3.25.1 is installed
  • OR ardana-designate-8.0+git.1558636763.f7f09ca-3.14.1 is installed
  • OR ardana-freezer-8.0+git.1534266805.c9ea29b-3.15.1 is installed
  • OR ardana-glance-8.0+git.1555450219.97789ac-3.11.1 is installed
  • OR ardana-heat-8.0+git.1555450207.a7d3bfe-3.12.1 is installed
  • OR ardana-horizon-8.0+git.1554732431.8f9dd50-3.15.1 is installed
  • OR ardana-input-model-8.0+git.1557418274.fb273dd-3.27.1 is installed
  • OR ardana-ironic-8.0+git.1534266893.1d69df7-3.6.1 is installed
  • OR ardana-keystone-8.0+git.1554915846.db23473-3.24.1 is installed
  • OR ardana-logging-8.0+git.1544117621.1c9a954-3.18.1 is installed
  • OR ardana-magnum-8.0+git.1555450198.c42dc52-3.6.1 is installed
  • OR ardana-manila-8.0+git.1551748668.7427826-1.18.1 is installed
  • OR ardana-memcached-8.0+git.1534266982.498c352-3.6.1 is installed
  • OR ardana-monasca-8.0+git.1557856965.bde9eb2-3.18.1 is installed
  • OR ardana-monasca-transform-8.0+git.1534267017.4bbecd9-3.9.1 is installed
  • OR ardana-mq-8.0+git.1549882721.b2e8873-3.13.1 is installed
  • OR ardana-neutron-8.0+git.1557523208.81aa1da-3.30.1 is installed
  • OR ardana-nova-8.0+git.1559253853.bb932ea-3.29.1 is installed
  • OR ardana-octavia-8.0+git.1557523035.ab44613-3.17.1 is installed
  • OR ardana-opsconsole-8.0+git.1534267103.829be13-3.10.1 is installed
  • OR ardana-opsconsole-ui-8.0+git.1537201508.68c32e6-3.16.1 is installed
  • OR ardana-osconfig-8.0+git.1557503482.852ec24-3.36.1 is installed
  • OR ardana-service-8.0+git.1551382173.a81d5e1-3.26.1 is installed
  • OR ardana-service-ansible-8.0+git.1544119019.e68516a-3.17.1 is installed
  • OR ardana-ses-8.0+git.1554912320.73ad306-1.20.1 is installed
  • OR ardana-spark-8.0+git.1539709555.5b31c25-3.12.1 is installed
  • OR ardana-swift-8.0+git.1551502730.f4d219d-3.27.1 is installed
  • OR ardana-tempest-8.0+git.1557761054.b971c8f-3.21.1 is installed
  • OR ardana-tls-8.0+git.1534267264.6b1e899-3.6.1 is installed
  • OR documentation-suse-openstack-cloud-installation-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-operations-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-opsconsole-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-planning-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-security-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20190521-1.17.1 is installed
  • OR documentation-suse-openstack-cloud-user-8.20190521-1.17.1 is installed
  • OR openstack-aodh-5.1.1~dev7-3.11.2 is installed
  • OR openstack-aodh-api-5.1.1~dev7-3.11.2 is installed
  • OR openstack-aodh-doc-5.1.1~dev7-3.11.1 is installed
  • OR openstack-aodh-evaluator-5.1.1~dev7-3.11.2 is installed
  • OR openstack-aodh-expirer-5.1.1~dev7-3.11.2 is installed
  • OR openstack-aodh-listener-5.1.1~dev7-3.11.2 is installed
  • OR openstack-aodh-notifier-5.1.1~dev7-3.11.2 is installed
  • OR openstack-barbican-5.0.2~dev3-3.14.2 is installed
  • OR openstack-barbican-api-5.0.2~dev3-3.14.2 is installed
  • OR openstack-barbican-doc-5.0.2~dev3-3.14.1 is installed
  • OR openstack-barbican-keystone-listener-5.0.2~dev3-3.14.2 is installed
  • OR openstack-barbican-retry-5.0.2~dev3-3.14.2 is installed
  • OR openstack-barbican-worker-5.0.2~dev3-3.14.2 is installed
  • OR openstack-ceilometer-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-agent-central-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-agent-compute-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-agent-ipmi-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-agent-notification-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-api-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-collector-9.0.8~dev7-3.12.2 is installed
  • OR openstack-ceilometer-doc-9.0.8~dev7-3.12.1 is installed
  • OR openstack-ceilometer-polling-9.0.8~dev7-3.12.2 is installed
  • OR openstack-cinder-11.2.3~dev5-3.15.2 is installed
  • OR openstack-cinder-api-11.2.3~dev5-3.15.2 is installed
  • OR openstack-cinder-backup-11.2.3~dev5-3.15.2 is installed
  • OR openstack-cinder-doc-11.2.3~dev5-3.15.1 is installed
  • OR openstack-cinder-scheduler-11.2.3~dev5-3.15.2 is installed
  • OR openstack-cinder-volume-11.2.3~dev5-3.15.2 is installed
  • OR openstack-dashboard-12.0.4~dev6-3.20.2 is installed
  • OR openstack-dashboard-theme-SUSE-2017.2+git.1554906711.9dbe79b-7.11.1 is installed
  • OR openstack-designate-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-agent-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-api-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-central-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-doc-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-producer-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-sink-5.0.3~dev7-3.11.1 is installed
  • OR openstack-designate-worker-5.0.3~dev7-3.11.1 is installed
  • OR openstack-heat-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-api-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-api-cfn-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-api-cloudwatch-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-doc-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-engine-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-gbp-7.0.1~dev1-3.3.1 is installed
  • OR openstack-heat-plugin-heat_docker-9.0.8~dev3-3.18.2 is installed
  • OR openstack-heat-test-9.0.8~dev3-3.18.2 is installed
  • OR openstack-horizon-plugin-trove-ui-9.0.1~dev10-3.9.1 is installed
  • OR openstack-ironic-9.1.8~dev5-3.18.2 is installed
  • OR openstack-ironic-api-9.1.8~dev5-3.18.2 is installed
  • OR openstack-ironic-conductor-9.1.8~dev5-3.18.2 is installed
  • OR openstack-ironic-doc-9.1.8~dev5-3.18.1 is installed
  • OR openstack-keystone-12.0.4~dev2-5.19.2 is installed
  • OR openstack-keystone-doc-12.0.4~dev2-5.19.1 is installed
  • OR openstack-monasca-agent-2.2.5~dev2-3.9.2 is installed
  • OR openstack-monasca-api-2.2.1~dev26-3.12.2 is installed
  • OR openstack-monasca-log-api-2.3.1~dev12-3.6.2 is installed
  • OR openstack-neutron-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-dhcp-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-doc-11.0.9~dev28-3.18.1 is installed
  • OR openstack-neutron-fwaas-11.0.3~dev1-3.14.1 is installed
  • OR openstack-neutron-fwaas-doc-11.0.3~dev1-3.14.1 is installed
  • OR openstack-neutron-gbp-7.3.1~dev28-3.3.1 is installed
  • OR openstack-neutron-ha-tool-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-l3-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-lbaas-11.0.4~dev6-3.9.1 is installed
  • OR openstack-neutron-lbaas-agent-11.0.4~dev6-3.9.1 is installed
  • OR openstack-neutron-lbaas-doc-11.0.4~dev6-3.9.1 is installed
  • OR openstack-neutron-linuxbridge-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-macvtap-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-metadata-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-metering-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-openvswitch-agent-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-server-11.0.9~dev28-3.18.2 is installed
  • OR openstack-neutron-vpn-agent-11.0.1~dev5-3.12.1 is installed
  • OR openstack-neutron-vpnaas-11.0.1~dev5-3.12.1 is installed
  • OR openstack-neutron-vpnaas-doc-11.0.1~dev5-3.12.1 is installed
  • OR openstack-neutron-vyatta-agent-11.0.1~dev5-3.12.1 is installed
  • OR openstack-nova-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-api-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-cells-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-compute-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-conductor-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-console-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-doc-16.1.9~dev3-3.23.1 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-placement-api-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-scheduler-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev3-3.23.2 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev3-3.23.2 is installed
  • OR openstack-trove-8.0.1~dev13-3.9.1 is installed
  • OR openstack-trove-api-8.0.1~dev13-3.9.1 is installed
  • OR openstack-trove-conductor-8.0.1~dev13-3.9.1 is installed
  • OR openstack-trove-doc-8.0.1~dev13-3.9.1 is installed
  • OR openstack-trove-guestagent-8.0.1~dev13-3.9.1 is installed
  • OR openstack-trove-taskmanager-8.0.1~dev13-3.9.1 is installed
  • OR python-Django-1.11.20-3.7.1 is installed
  • OR python-aodh-5.1.1~dev7-3.11.2 is installed
  • OR python-ardana-configurationprocessor-8.0+git.1534266236.fb1623c-6.9.1 is installed
  • OR python-barbican-5.0.2~dev3-3.14.2 is installed
  • OR python-ceilometer-9.0.8~dev7-3.12.2 is installed
  • OR python-cinder-11.2.3~dev5-3.15.2 is installed
  • OR python-cinderlm-0.0.2+git.1541444073.4d3347c-3.6.1 is installed
  • OR python-cliff-2.8.3-3.6.2 is installed
  • OR python-designate-5.0.3~dev7-3.11.1 is installed
  • OR python-freezerclient-1.5.1-3.3.2 is installed
  • OR python-freezerclient-doc-1.5.1-3.3.2 is installed
  • OR python-heat-9.0.8~dev3-3.18.2 is installed
  • OR python-heat-gbp-7.0.1~dev1-3.3.1 is installed
  • OR python-horizon-12.0.4~dev6-3.20.2 is installed
  • OR python-horizon-plugin-trove-ui-9.0.1~dev10-3.9.1 is installed
  • OR python-ironic-9.1.8~dev5-3.18.2 is installed
  • OR python-ironicclient-1.17.2-3.3.1 is installed
  • OR python-ironicclient-doc-1.17.2-3.3.1 is installed
  • OR python-keystone-12.0.4~dev2-5.19.2 is installed
  • OR python-magnumclient-2.7.1-3.3.1 is installed
  • OR python-magnumclient-doc-2.7.1-3.3.1 is installed
  • OR python-manilaclient-1.17.4-3.6.1 is installed
  • OR python-manilaclient-doc-1.17.4-3.6.1 is installed
  • OR python-monasca-agent-2.2.5~dev2-3.9.2 is installed
  • OR python-monasca-api-2.2.1~dev26-3.12.2 is installed
  • OR python-monasca-log-api-2.3.1~dev12-3.6.2 is installed
  • OR python-muranoclient-0.14.1-3.3.1 is installed
  • OR python-muranoclient-doc-0.14.1-3.3.1 is installed
  • OR python-neutron-11.0.9~dev28-3.18.2 is installed
  • OR python-neutron-fwaas-11.0.3~dev1-3.14.1 is installed
  • OR python-neutron-gbp-7.3.1~dev28-3.3.1 is installed
  • OR python-neutron-lbaas-11.0.4~dev6-3.9.1 is installed
  • OR python-neutron-vpnaas-11.0.1~dev5-3.12.1 is installed
  • OR python-nova-16.1.9~dev3-3.23.2 is installed
  • OR python-novaclient-9.1.3-3.6.2 is installed
  • OR python-novaclient-doc-9.1.3-3.6.2 is installed
  • OR python-openstackclient-3.12.2-3.3.1 is installed
  • OR python-os-brick-1.15.9-3.6.2 is installed
  • OR python-os-client-config-1.28.1-3.3.1 is installed
  • OR python-os-vif-1.7.2-3.3.2 is installed
  • OR python-os-win-2.2.1-3.3.1 is installed
  • OR python-oslo.cache-1.25.2-3.3.1 is installed
  • OR python-oslo.concurrency-3.21.2-3.3.1 is installed
  • OR python-oslo.config-4.11.2-3.3.1 is installed
  • OR python-oslo.config-doc-4.11.2-3.3.1 is installed
  • OR python-oslo.i18n-3.17.2-3.3.2 is installed
  • OR python-oslo.log-3.30.3-3.3.1 is installed
  • OR python-oslo.messaging-5.30.8-3.8.1 is installed
  • OR python-oslo.middleware-3.30.2-3.3.1 is installed
  • OR python-oslo.policy-1.25.4-3.6.1 is installed
  • OR python-oslo.privsep-1.22.2-3.3.1 is installed
  • OR python-oslo.reports-1.22.2-3.3.1 is installed
  • OR python-oslo.utils-3.28.4-3.6.1 is installed
  • OR python-oslo.versionedobjects-1.26.3-3.6.1 is installed
  • OR python-oslo.vmware-2.23.2-3.3.1 is installed
  • OR python-oslotest-2.17.2-3.3.1 is installed
  • OR python-python-subunit-1.2.0-4.3.1 is installed
  • OR python-saharaclient-1.3.1-3.3.1 is installed
  • OR python-saharaclient-doc-1.3.1-3.3.1 is installed
  • OR python-swiftclient-3.4.1-3.3.1 is installed
  • OR python-swiftclient-doc-3.4.1-3.3.1 is installed
  • OR python-trove-8.0.1~dev13-3.9.1 is installed
  • OR python-zaqarclient-1.7.1-3.3.1 is installed
  • OR supportutils-plugin-suse-openstack-cloud-8.0.1551262227.7a7deb6-3.3.1 is installed
  • OR venv-openstack-aodh-x86_64-5.1.1~dev7-12.16.1 is installed
  • OR venv-openstack-barbican-x86_64-5.0.2~dev3-12.17.1 is installed
  • OR venv-openstack-ceilometer-x86_64-9.0.8~dev7-12.14.1 is installed
  • OR venv-openstack-cinder-x86_64-11.2.3~dev5-14.17.1 is installed
  • OR venv-openstack-designate-x86_64-5.0.3~dev7-12.15.1 is installed
  • OR venv-openstack-freezer-x86_64-5.0.0.0~xrc2~dev2-10.12.1 is installed
  • OR venv-openstack-glance-x86_64-15.0.2~dev9-12.15.1 is installed
  • OR venv-openstack-heat-x86_64-9.0.8~dev3-12.17.1 is installed
  • OR venv-openstack-horizon-x86_64-12.0.4~dev6-14.22.1 is installed
  • OR venv-openstack-ironic-x86_64-9.1.8~dev5-12.17.1 is installed
  • OR venv-openstack-keystone-x86_64-12.0.4~dev2-11.17.1 is installed
  • OR venv-openstack-magnum-x86_64-5.0.2-11.15.1 is installed
  • OR venv-openstack-manila-x86_64-5.0.4~dev17-12.19.1 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.5.1-8.11.1 is installed
  • OR venv-openstack-monasca-x86_64-2.2.1-11.13.1 is installed
  • OR venv-openstack-murano-x86_64-4.0.1-12.11.1 is installed
  • OR venv-openstack-neutron-x86_64-11.0.2-13.19.1 is installed
  • OR venv-openstack-nova-x86_64-16.1.9~dev3-11.18.1 is installed
  • OR venv-openstack-octavia-x86_64-1.0.5~dev1-12.17.1 is installed
  • OR venv-openstack-sahara-x86_64-7.0.4~dev1-11.16.1 is installed
  • OR venv-openstack-swift-x86_64-2.15.2-11.11.1 is installed
  • OR venv-openstack-trove-x86_64-8.0.1~dev13-11.16.1 is installed
  • BACK