stable

openstack-keystone-2012.2.4-5.el6

FEDORA-EPEL-2013-10621 created by apevec 12 years ago for Fedora EPEL 6

Updated to stable folsom release 2012.2.4 Force simple Bind for authentication CVE-2013-2157 authtoken: Check token expiry CVE-2013-2104 Revoke tokens on user delete CVE-2013-2059 authtoken: Securely create signing_dir CVE-2013-2030 Avoid potential disclosure in log files CVE-2013-2006 Fix online revocation check for PKI tokens CVE-2013-1865

This update has been submitted for testing by apevec.

12 years ago

This update is currently being pushed to the Fedora EPEL 6 testing updates repository.

12 years ago

This update has been pushed to testing

12 years ago

This update has reached 14 days in testing and can be pushed to stable now if the maintainer wishes

12 years ago

This update has been submitted for stable by apevec.

12 years ago

This update is currently being pushed to the Fedora EPEL 6 stable updates repository.

12 years ago

This update has been pushed to stable

12 years ago

Please log in to add feedback.

Metadata
Type
security
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
12 years ago
in testing
12 years ago
in stable
12 years ago
modified
12 years ago
BZ#922230 CVE-2013-1865 OpenStack keystone: online validation of Keystone PKI tokens bypasses revocation check
0
0
BZ#928406 CVE-2013-1865 OpenStack keystone: online validation of Keystone PKI tokens bypasses revocation check [epel-6]
0
0
BZ#956007 CVE-2013-2006 OpenStack keystone: DEBUG level LDAP password disclosure in log files
0
0
BZ#956474 OpenStack keystone: /var/log/keystone/ is world readable
0
0
BZ#956809 OpenStack keystone: /var/log/keystone/ is world readable [epel-6]
0
0
BZ#956850 CVE-2013-2006 OpenStack keystone: DEBUG level LDAP password disclosure in log files [epel-6]
0
0
BZ#965852 CVE-2013-2104 OpenStack Keystone: Missing expiration check in Keystone PKI token validation
0
0
BZ#968330 CVE-2013-2104 OpenStack Keystone: Missing expiration check in Keystone PKI token validation [epel-6]
0
0
BZ#971884 CVE-2013-2157 openstack-keystone: Authentication bypass when using LDAP backend
0
0
BZ#974951 CVE-2013-2157 openstack-keystone: Authentication bypass when using LDAP backend [epel-6]
0
0

Automated Test Results