UbuntuUpdates.org

Package "python3-keystonemiddleware"

Name: python3-keystonemiddleware

Description:

Middleware for OpenStack Identity (Keystone) - Python 3.x

Latest version: 10.6.0-0ubuntu1.1
Release: noble (24.04)
Level: security
Repository: main
Head package: python-keystonemiddleware
Homepage: https://launchpad.net/keystonemiddleware

Links


Download "python3-keystonemiddleware"


Other versions of "python3-keystonemiddleware" in Noble

Repository Area Version
base main 10.6.0-0ubuntu1
updates main 10.6.0-0ubuntu1.1

Changelog

Version: 10.6.0-0ubuntu1.1 2026-02-03 18:07:53 UTC

  python-keystonemiddleware (10.6.0-0ubuntu1.1) noble-security; urgency=medium

  * SECURITY UPDATE: Privilege Escalation via Identity Headers in External
    OAuth2 Tokens
    - debian/patches/CVE-2026-22797.patch: sanitize incoming authentication
      headers in keystonemiddleware/external_oauth2_token.py,
      keystonemiddleware/tests/unit/test_external_oauth2_token_middleware.py.
    - CVE-2026-22797

 -- Marc Deslauriers <email address hidden> Tue, 20 Jan 2026 14:16:52 -0500

CVE-2026-22797 An issue was discovered in OpenStack keystonemiddleware 10.5 through 10.7 before 10.7.2, 10.8 and 10.9 before 10.9.1, and 10.10 through 10.12 before



About   -   Send Feedback to @ubuntu_updates