Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1553392 - EvmRole-auditor can perform actions on VM
EvmRole-auditor can perform actions on VM
Status: CLOSED ERRATA
Product: Red Hat CloudForms Management Engine
Classification: Red Hat
Component: UI - OPS (Show other bugs)
5.8.0
Unspecified Unspecified
high Severity high
: GA
: 5.9.2
Assigned To: Martin Povolny
Landon LaSmith
: ZStream
Depends On: 1479583
Blocks:
  Show dependency treegraph
 
Reported: 2018-03-08 14:08 EST by Satoe Imaishi
Modified: 2018-05-07 16:45 EDT (History)
11 users (show)

See Also:
Fixed In Version: 5.9.2.0
Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: 1479583
Environment:
Last Closed: 2018-05-07 16:45:31 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: CFME Core


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2018:1328 None None None 2018-05-07 16:45 EDT

  None (edit)
Comment 2 CFME Bot 2018-03-08 14:46:06 EST
New commit detected on ManageIQ/manageiq/gaprindashvili:

https://github.com/ManageIQ/manageiq/commit/555435b44d629d182c554f3303ede83bad525fac
commit 555435b44d629d182c554f3303ede83bad525fac
Author:     Harpreet Kataria <hkataria@redhat.com>
AuthorDate: Fri Jan 26 09:17:45 2018 -0500
Commit:     Harpreet Kataria <hkataria@redhat.com>
CommitDate: Fri Jan 26 09:17:45 2018 -0500

    Merge pull request #16394 from martinpovolny/role_fix

    Fix the pre-defined Auditor role's permissions.
    (cherry picked from commit fcc654f3a77d9e843b200d38ff07922333c540c2)

    Fixes https://bugzilla.redhat.com/show_bug.cgi?id=1553392

 db/fixtures/miq_user_roles.yml | 36 +-
 1 file changed, 22 insertions(+), 14 deletions(-)
Comment 3 Landon LaSmith 2018-04-02 12:59:39 EDT
Verified in 5.9.2. A user with EVMRole-auditor permissions no longer has access to VM power controls
Comment 6 errata-xmlrpc 2018-05-07 16:45:31 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2018:1328

Note You need to log in before you can comment on or make changes to this bug.