SUSE Security Update: Security update for openstack-glance
______________________________________________________________________________

Announcement ID:    SUSE-SU-2012:1455-1
Rating:             important
References:         #787814 
Cross-References:   CVE-2012-4573
Affected Products:
                    SUSE Cloud 1.0
______________________________________________________________________________

   An update that fixes one vulnerability is now available.

Description:


   OpenStack glance had a bug where image deletion was allowed
   for all logged  in users (CVE-2012-4573). This has been
   fixed.

   Security Issue reference:

   * CVE-2012-4573
   


Patch Instructions:

   To install this SUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - SUSE Cloud 1.0:

      zypper in -t patch sleclo10sp2-openstack-glance-7033

   To bring your system up-to-date, use "zypper patch".


Package List:

   - SUSE Cloud 1.0 (x86_64):

      openstack-glance-2012.1+git.1344578005.120fcf4-0.7.1
      python-glance-2012.1+git.1344578005.120fcf4-0.7.1


References:

   https://www.suse.com/security/cve/CVE-2012-4573.html
   https://bugzilla.novell.com/787814
   https://login.microfocus.com/nidp/app/login

SuSE: 2012:1455-1: important: openstack-glance

November 8, 2012
An update that fixes one vulnerability is now available

Summary

OpenStack glance had a bug where image deletion was allowed for all logged in users (CVE-2012-4573). This has been fixed. Security Issue reference: * CVE-2012-4573 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Cloud 1.0: zypper in -t patch sleclo10sp2-openstack-glance-7033 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Cloud 1.0 (x86_64): openstack-glance-2012.1+git.1344578005.120fcf4-0.7.1 python-glance-2012.1+git.1344578005.120fcf4-0.7.1

References

#787814

Cross- CVE-2012-4573

Affected Products:

SUSE Cloud 1.0

https://www.suse.com/security/cve/CVE-2012-4573.html

https://bugzilla.novell.com/787814

https://login.microfocus.com/nidp/app/login

Severity
Announcement ID: SUSE-SU-2012:1455-1
Rating: important

Related News