Format: 1.8 Date: Fri, 25 Aug 2017 07:54:45 -0400 Source: aodh Binary: python-aodh aodh-common aodh-api aodh-evaluator aodh-notifier aodh-listener aodh-expirer aodh-doc Architecture: source Version: 4.0.1-0ubuntu0.17.04.2 Distribution: zesty-security Urgency: medium Maintainer: Ubuntu Developers Changed-By: Marc Deslauriers Description: aodh-api - OpenStack Telemetry (Ceilometer) Alarming - API server aodh-common - OpenStack Telemetry (Ceilometer) Alarming - common files aodh-doc - OpenStack efficient metering counters system - doc aodh-evaluator - OpenStack Telemetry (Ceilometer) Alarming - alarm evaluator aodh-expirer - OpenStack Telemetry (Ceilometer) Alarming - expirer aodh-listener - OpenStack Telemetry (Ceilometer) Alarming - listener aodh-notifier - OpenStack Telemetry (Ceilometer) Alarming - alarm notifier python-aodh - OpenStack Telemetry (Ceilometer) Alarming - Python libraries Changes: aodh (4.0.1-0ubuntu0.17.04.2) zesty-security; urgency=medium . * SECURITY UPDATE: Aodh can be used to launder Keystone trusts - debian/patches/CVE-2017-12440.patch: don't allow the user to pass in a trust ID in aodh/api/controllers/v2/alarms.py, update comment in aodh/notifier/trust.py, aodh/notifier/zaqar.py. - CVE-2017-12440 Checksums-Sha1: 8b4e88c4496bbfeb9cd8ef950c626e3ff05213d0 3908 aodh_4.0.1-0ubuntu0.17.04.2.dsc 5361ac3ee5023c142ab8e179ae1d8aa6045c98d7 9668 aodh_4.0.1-0ubuntu0.17.04.2.debian.tar.xz Checksums-Sha256: 6f036f800c9802dc1a4010751949962d33078f7a7d4c79215a9beb20bcc3d466 3908 aodh_4.0.1-0ubuntu0.17.04.2.dsc fd74da0adac79addc1e702d4552cd98eb3385bdb6f7a77801c353d61ae95a6af 9668 aodh_4.0.1-0ubuntu0.17.04.2.debian.tar.xz Files: 295386c6c44f0959703c3831ca2ba5dc 3908 web optional aodh_4.0.1-0ubuntu0.17.04.2.dsc ac4244f8480cdfbd0090062b63324672 9668 web optional aodh_4.0.1-0ubuntu0.17.04.2.debian.tar.xz Original-Maintainer: PKG OpenStack