[Rdo-list] [package announce] python-keystoneclient security update

Pádraig Brady pbrady at redhat.com
Tue Jul 30 17:16:45 UTC 2013


Grizzly python-keystoneclient has been updated fix various security issues.

el6 Grizzly and F18 Grizzly are updated to python-keystoneclient-0.2.3-6:

- Ec2Signer: Initial support for v4 signature verification
- Default signing_dir to secure temp dir
- Fix memcache encryption middleware
    https://access.redhat.com/security/cve/CVE-2013-2166
    https://access.redhat.com/security/cve/CVE-2013-2167
- Check token expiry
    https://access.redhat.com/security/cve/CVE-2013-2104
- Allow secure user password update
    https://access.redhat.com/security/cve/CVE-2013-2013




More information about the dev mailing list