Your submission was sent successfully! Close

You have successfully unsubscribed! Close

CVE-2023-1625

Published: 27 March 2023

[information leak in API]

Notes

AuthorNote
mdeslaur
fixed in jammy-updates and kinetic-updates as a SRU, but not
yet in the -security pocket.

Priority

Medium

Status

Package Release Status
heat
Launchpad, Ubuntu, Debian
bionic
Released (1:10.0.2-0ubuntu1.1)
focal
Released (1:14.2.0-0ubuntu1.1)
jammy Needed

kinetic Needed

lunar Not vulnerable
(1:20.0.0-0ubuntu1)
trusty Ignored
(out of standard support)
upstream Needs triage

xenial Needs triage

Patches:
upstream: https://github.com/openstack/heat/commit/1305a3152f75c6e62ec5094ea2bfc38f165204cf (20.0.0.0rc1)
upstream: https://github.com/openstack/heat/commit/a49526c278e52823080c7f3fcb72785b93fd4dcb