← Back to team overview

yahoo-eng-team team mailing list archive

[Bug 1315321] Re: [OSSA 2014-028] image_size_cap not checked in v2 (CVE-2014-5356)

 

** Changed in: glance
       Status: Fix Committed => Fix Released

** Changed in: glance
    Milestone: None => juno-3

-- 
You received this bug notification because you are a member of Yahoo!
Engineering Team, which is subscribed to Glance.
https://bugs.launchpad.net/bugs/1315321

Title:
  [OSSA 2014-028] image_size_cap not checked in v2 (CVE-2014-5356)

Status in OpenStack Image Registry and Delivery Service (Glance):
  Fix Released
Status in Glance havana series:
  Fix Committed
Status in Glance icehouse series:
  Fix Committed
Status in OpenStack Security Advisories:
  Fix Released

Bug description:
  To reproduce (using devstack):

  create an image
  upload image data larger than image_size_cap

  This should result in an error, but doesn't

To manage notifications about this bug go to:
https://bugs.launchpad.net/glance/+bug/1315321/+subscriptions


References