RHSA-2015:0790High
Red Hat Security Advisory: openstack-nova security, bug fix, and enhancement update
🔗 CVE IDs covered (1)
📋 Description
CVE-2015-0259 — openstack-nova: console Cross-Site WebSocket hijacking
🎯 Affected products17
- Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-0:2014.2.2-19.el7ost.src as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-api-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-cells-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-cert-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-common-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-compute-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-conductor-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-console-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-doc-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-network-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-novncproxy-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-objectstore-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-scheduler-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- openstack-nova-serialproxy-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
- python-nova-0:2014.2.2-19.el7ost.noarch as a component of Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7
✅ Remediation
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258
🔗 References (12)
- selfhttps://access.redhat.com/errata/RHSA-2015:0790
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://access.redhat.com/site/documentation/en-US/Red_Hat_Enterprise_Linux_OpenStack_Platform/6/html/Technical_Notes/index.html
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1017288
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1100535
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1104926
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1171454
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1190112
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1190719
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1191174
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1203182
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2015/rhsa-2015_0790.json