Files
security-doc/security-notes
Dave McCowan f7df1f4041 Add OSSN-0063
Add OSSN-0063 which discuss a bug in the Barbican key manager that
is part of Nova and Cinder.  This bug has been patched to affected
versions that are still supported.

Closes-Bug: #1523646
Change-Id: I649c0d817d96d0dc89367d69c73483b45d8e626f
2016-06-01 23:49:22 +00:00
..
2014-10-26 20:02:35 +01:00
2014-09-11 07:40:54 -07:00
2014-10-26 20:02:35 +01:00
2014-10-26 20:02:35 +01:00
2014-10-19 21:48:01 -07:00
2014-10-21 09:40:40 -07:00
2014-10-19 21:48:01 -07:00
2014-10-19 21:48:01 -07:00
2014-10-19 21:48:01 -07:00
2014-10-19 21:48:01 -07:00
2014-12-16 17:35:45 -08:00
2015-02-04 17:40:01 +00:00
2015-02-27 00:27:09 +00:00
2015-04-30 19:10:04 -07:00
2015-04-14 07:03:30 -07:00
2015-04-28 14:04:59 -04:00
2015-07-07 06:48:33 -07:00
2015-09-04 11:00:47 -07:00
2015-09-23 12:24:59 -07:00
2015-09-17 10:29:24 -07:00
2015-09-03 13:56:24 -04:00
2016-01-25 08:29:55 -08:00
2015-12-07 23:40:54 +00:00
2015-12-15 12:20:29 -08:00
2016-06-01 23:49:22 +00:00
2016-04-26 13:45:01 -05:00

OpenStack Security Notes (OSSN)

The OpenStack Security Group (OSSG) publishes Security Notes to advise users of security related issues. Security notes are similar to advisories; they address vulnerabilities in 3rd party tools typically used within OpenStack deployments and provide guidance on common configuration mistakes that can result in an insecure operating environment.

Repository Layout

This repository contains published Security Notes and templates that should be used when creating new Security Notes.

notes - contains Security Notes in e-mail format (see the templates)
templates - contains e-mail and wiki format templates

A list of published Security Notes is available here:

https://wiki.openstack.org/wiki/Security_Notes

The process used to create new Security Notes is available here:

https://wiki.openstack.org/wiki/Security/Security_Note_Process