Bug 1562393
| Summary: | Tag python-paramiko for RHV 4.1 | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Virtualization Manager | Reporter: | Sandro Bonazzola <sbonazzo> |
| Component: | python-paramiko | Assignee: | Sandro Bonazzola <sbonazzo> |
| Status: | CLOSED ERRATA | QA Contact: | Pavol Brilla <pbrilla> |
| Severity: | urgent | Docs Contact: | |
| Priority: | urgent | ||
| Version: | unspecified | CC: | cstratak, lsvaty, torsava, trichard |
| Target Milestone: | ovirt-4.1.11 | Keywords: | Rebase, ZStream |
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | python-paramiko-2.1.1-4.el7 | Doc Type: | Rebase: Bug Fixes Only |
| Doc Text: |
The python-paramiko package has been rebased to version 2.1.1-4.el7.
This version includes the following security fix:
* (CVE-2018-7750) python-paramiko: Authentication bypass in transport.py
And the following bug fix:
* (BZ#1559133) python-paramiko has been using the python2-pyasn1 package, but did not depend
on it. With new versions of python2-cryptography, python2-pyasn1 was not getting
installed and this caused python-paramiko to malfunction. This bug was fixed by
making python-paramiko depend on python2-pyasn1 explicitly.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2018-05-02 13:10:16 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | Integration | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | |||
| Bug Blocks: | 1557565 | ||
|
Description
Sandro Bonazzola
2018-03-30 14:01:30 UTC
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2018:1274 BZ<2>Jira Resync |