SUSE-SU-2018:3924-1

Source
https://www.suse.com/support/update/announcement/2018/suse-su-20183924-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2018:3924-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2018:3924-1
Related
Published
2018-11-27T12:40:17Z
Modified
2018-11-27T12:40:17Z
Summary
Security update for python-oslo.cache, python-oslo.concurrency, python-oslo.db, python-oslo.log, python-oslo.messaging, python-oslo.middleware, python-oslo.serialization, python-oslo.service, python-oslo.utils, python-oslo.versionedobjects, python-oslo.vmware, python-oslotest
Details

This update for python-oslo.cache, python-oslo.concurrency, python-oslo.db, python-oslo.log, python-oslo.messaging, python-oslo.middleware, python-oslo.serialization, python-oslo.service, python-oslo.utils, python-oslo.versionedobjects, python-oslo.vmware, python-oslotest fixes the following issues:

python-oslo.cache was updated to 1.14.1:

  • use stable/newton constraints

python-oslo.concurrency was updated to version 3.14.1:

  • Ignore prlimit argument on Windows
  • Update .gitreview for stable/newton

python-oslo.db was updated to version 4.13.6:

  • Fix marker checking when value is None

python-oslo.log was updated to version 3.16.1:

  • Fix races in unit tests

python-oslo.messaging was updated to fix:

  • Skip logging sensitive information to avoid credential leak
  • Avoid reconnect to the same AMQP server while trying to error handle the original server error (bsc#1109756)

python-oslo.middleware was updated to version 3.19.1:

  • Filter token data out of catch_errors middleware (CVE-2017-2592 bsc#1022043)

python-oslo.serialization was updated to version 2.13.2:

  • Don't iterate through addresses in netaddr.IPNetwork

python-oslo.service was updated to version 1.16.1:

  • Fix race condition with fast threads

python-oslo.utils was updated to version 3.16.1:

  • Updated from global requirements

python-oslo.versionedobjects was updated to version 1.17.1:

  • update from global requirements

python-oslo.vmware was updated to version 2.14.1:

  • Updated from global requirements

python-oslotest was updated to version 2.10.1:

  • Updated from global requirements
References

Affected packages

SUSE:OpenStack Cloud 7 / python-oslo.cache

Package

Name
python-oslo.cache
Purl
pkg:rpm/suse/python-oslo.cache&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.14.1-3.3.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.concurrency

Package

Name
python-oslo.concurrency
Purl
pkg:rpm/suse/python-oslo.concurrency&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.14.1-3.3.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.db

Package

Name
python-oslo.db
Purl
pkg:rpm/suse/python-oslo.db&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.13.6-3.3.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.log

Package

Name
python-oslo.log
Purl
pkg:rpm/suse/python-oslo.log&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.16.1-3.3.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.messaging

Package

Name
python-oslo.messaging
Purl
pkg:rpm/suse/python-oslo.messaging&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.2-3.6.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.middleware

Package

Name
python-oslo.middleware
Purl
pkg:rpm/suse/python-oslo.middleware&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.19.1-4.3.4

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.serialization

Package

Name
python-oslo.serialization
Purl
pkg:rpm/suse/python-oslo.serialization&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.13.2-3.3.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.service

Package

Name
python-oslo.service
Purl
pkg:rpm/suse/python-oslo.service&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.16.1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.utils

Package

Name
python-oslo.utils
Purl
pkg:rpm/suse/python-oslo.utils&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.16.1-3.3.3

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.versionedobjects

Package

Name
python-oslo.versionedobjects
Purl
pkg:rpm/suse/python-oslo.versionedobjects&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.17.1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslo.vmware

Package

Name
python-oslo.vmware
Purl
pkg:rpm/suse/python-oslo.vmware&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.14.1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}

SUSE:OpenStack Cloud 7 / python-oslotest

Package

Name
python-oslotest
Purl
pkg:rpm/suse/python-oslotest&distro=SUSE%20OpenStack%20Cloud%207

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.10.1-3.3.1

Ecosystem specific

{
    "binaries": [
        {
            "python-oslo.utils": "3.16.1-3.3.3",
            "python-oslotest": "2.10.1-3.3.1",
            "python-oslo.versionedobjects": "1.17.1-3.3.1",
            "python-oslo.log": "3.16.1-3.3.3",
            "python-oslo.db": "4.13.6-3.3.3",
            "python-oslo.middleware": "3.19.1-4.3.4",
            "python-oslo.concurrency": "3.14.1-3.3.3",
            "python-oslo.messaging": "5.10.2-3.6.3",
            "python-oslo.cache": "1.14.1-3.3.3",
            "python-oslo.serialization": "2.13.2-3.3.3",
            "python-oslo.service": "1.16.1-3.3.1",
            "python-oslo.vmware": "2.14.1-3.3.1"
        }
    ]
}