Bug 2150182

Summary: [OSP17.0] osp-rpm-py39 job unit test broken after upstream cpython vulnerability fix backport
Product: Red Hat OpenStack Reporter: melanie witt <mwitt>
Component: openstack-novaAssignee: melanie witt <mwitt>
Status: CLOSED NEXTRELEASE QA Contact: OSP DFG:Compute <osp-dfg-compute>
Severity: medium Docs Contact:
Priority: medium    
Version: 17.0 (Wallaby)CC: dasmith, eglynn, jhakimra, jschluet, kchamart, nova-maint, sbauza, sgordon, smooney, vromanso
Target Milestone: ---Keywords: Patch, Triaged
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: openstack-nova-23.2.3-1.20221205160900.01e6783.el9osttrunk Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: 2150181 Environment:
Last Closed: 2022-12-08 21:10:21 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2150181    
Bug Blocks:    

Description melanie witt 2022-12-02 01:51:13 UTC
+++ This bug was initially created as a clone of Bug #2150181 +++

This was reported and fixed upstream [1] and at the time, only python >= 3.10.6 was affected and fixed.

The fix has since been backported to older versions of python, so we need to backport the fix for [1].

[1] https://bugs.launchpad.net/nova/+bug/1986545
[2] https://python-security.readthedocs.io/vuln/http-server-redirection.html