Title: Nova network security group changes are not applied to running instances Reporter: Sreekumar S and Suntao Products: Nova Affects: <=2014.2.3, >=2015.1.0, <=2015.1.1 Description: Sreekumar S and Suntao independently reported a vulnerability in Nova network. Security group changes silently fail to be applied to already running instances, potentially resulting in instances not being protected by the security group. All Nova network setups are affected. References: https://launchpad.net/bugs/1491307 https://launchpad.net/bugs/1484738 http://seclists.org/oss-sec/2015/q4/41
Created openstack-nova tracking bugs for this issue: Affects: openstack-rdo [bug 1269122] Affects: fedora-all [bug 1269123]
Upstream patches: https://review.openstack.org/222026 (Juno) https://review.openstack.org/222023 (Kilo) https://review.openstack.org/222022 (Liberty)
This issue has been addressed in the following products: OpenStack 7 For RHEL 7 Via RHSA-2015:2673 https://access.redhat.com/errata/RHSA-2015:2673
This issue has been addressed in the following products: OpenStack 5 for RHEL 7 Via RHSA-2015:2684 https://rhn.redhat.com/errata/RHSA-2015-2684.html
This issue has been addressed in the following products: OpenStack 6 for RHEL 7 Via RHSA-2016:0013 https://rhn.redhat.com/errata/RHSA-2016-0013.html
This issue has been addressed in the following products: OpenStack 5 for RHEL 6 Via RHSA-2016:0017 https://rhn.redhat.com/errata/RHSA-2016-0017.html