← Back to team overview

openstack team mailing list archive

Re: [OSSA 2013-011] Keystone tokens not immediately invalidated when user is deleted (CVE-2013-2059)

 

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Miller, Mark M (EB SW Cloud - R&D - Corvallis) wrote:
> Looks like a fix has been written for Grizzly. Is there an official
> Grizzly patch release coming out that contains this and other
> fixes?

Point releases for the last OpenStack release, containing all security
fixes and high-impact bugfixes, are regularly produced.

It happens that 2013.1.1, the first Grizzly point release, shall be
released today.

- -- 
Thierry Carrez (ttx)
Release Manager, OpenStack
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
Comment: Using GnuPG with undefined - http://www.enigmail.net/
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=3aK8
-----END PGP SIGNATURE-----


References