UbuntuUpdates.org

Package "ironic-common"

Name: ironic-common

Description:

Openstack bare metal provisioning service - daemons

Latest version: 1:24.1.1-0ubuntu1.2
Release: noble (24.04)
Level: updates
Repository: universe
Head package: ironic
Homepage: https://opendev.org/openstack/ironic

Links


Download "ironic-common"


Other versions of "ironic-common" in Noble

Repository Area Version
base universe 1:24.1.1-0ubuntu1
security universe 1:24.1.1-0ubuntu1.2

Changelog

Version: 1:24.1.1-0ubuntu1.2 2024-09-04 19:07:04 UTC

  ironic (1:24.1.1-0ubuntu1.2) noble-security; urgency=medium

  * SECURITY UPDATE: ensure underlying environment details not leaked when a
    maliciously crafted image is used (LP: #2071740).
    - d/p/CVE-2024-44082.patch: Harden all image handling and conversion code.
    - d/control: Add qemu-utils to Build-Depends to allow unit tests to run
      qemu-img.
    - CVE-2024-44082

 -- Felipe Reyes <email address hidden> Tue, 03 Sep 2024 16:06:12 +0100

2071740 [OSSA-2024-003] Unvalidated image data passed to qemu-img (CVE-2024-44082)



About   -   Send Feedback to @ubuntu_updates