~ubuntu-server-dev/ubuntu/+source/keystone:stable/queens

Last commit made on 2020-10-27
Get this branch:
git clone -b stable/queens https://git.launchpad.net/~ubuntu-server-dev/ubuntu/+source/keystone
Members of Ubuntu Server Developers can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
stable/queens
Repository:
lp:~ubuntu-server-dev/ubuntu/+source/keystone

Recent commits

416a968... by Corey Bryant

Cleanup moved repository

This repository has moved to https://code.launchpad.net/~ubuntu-openstack-dev/ubuntu/+source/keystone/+git/keystone.

67b18db... by Corey Bryant

releasing package keystone version 2:13.0.4-0ubuntu1

0ae4254... by Corey Bryant

d/p/0001-fixing-dn-to-id.patch: Dropped. Fixed in upstream release.

7256db8... by Corey Bryant

SECURITY UPDATE: EC2 and/or credential endpoints are not protected
from a scoped context. Keystone V3 /credentials endpoint policy
logic allows to change credentials owner or target project ID.
- debian/patches/CVE-2020-12689-CVE-2020-12691.patch: Fix security
  issues with EC2 credentials, addressing several issues in the
  creation and use of EC2/S3 credentials with keystone tokens.
- CVE-2020-12689, CVE-2020-12691
SECURITY UPDATE: OAuth1 request token authorize silently ignores
roles parameter.
- debian/patches/CVE-2020-12690.patch: Ensure OAuth1 authorized
  roles are respected.
- CVE-2020-12691
SECURITY UPDATE: Keystone doesn't check signature TTL of the EC2
credential auth method.
- debian/patches/CVE-2020-12692.patch: Check timestamp of signed
  EC2 token request.
- CVE-2020-12692

49b26ee... by Chris MacNaughton

New stable point release for OpenStack Queens (LP: #1893234).

d1da230... by Chris MacNaughton

Update upstream source from tag '13.0.4'

Update to upstream version '13.0.4'
with Debian dir 55b833029ebc9f2d6ac942ae026ecde6111dd4a8

9067dd3... by Chris MacNaughton

New upstream version 13.0.4

d837848... by Chris MacNaughton

d/watch: Update to point at opendev.org.

6c7a178... by Corey Bryant

New upstream version 18.0.0~b2~git2020073017.b187dfd05

fd2167f... by Corey Bryant

New upstream version 18.0.0~b1~git2020070209.3eb8cafb8