Upstream information

CVE-2020-5390 at MITRE

Description

PySAML2 before 5.0.0 does not check that the signature in a SAML document is enveloped and thus signature wrapping is effective, i.e., it is affected by XML Signature Wrapping (XSW). The signature information and the node/object that is signed can be in different places and thus the signature verification will succeed, but the wrong data will be used. This specifically affects the verification of assertion that have been signed.

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having moderate severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 5
Vector AV:N/AC:L/Au:N/C:N/I:P/A:N
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact Partial
Availability Impact None
CVSS v3 Scores
  National Vulnerability Database SUSE
Base Score 7.5 5.3
Vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Access Vector Network Network
Access Complexity Low Low
Privileges Required None None
User Interaction None None
Scope Unchanged Unchanged
Confidentiality Impact None None
Integrity Impact High Low
Availability Impact None None
CVSSv3 Version 3.1 3.1
SUSE Bugzilla entry: 1160851 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
HPE Helion Openstack 8
  • ansible >= 2.4.6.0-3.9.1
  • ansible1 >= 1.9.6-7.3.1
  • ardana-ansible >= 8.0+git.1589740980.6c3bcdc-3.73.1
  • ardana-cluster >= 8.0+git.1585685203.3e71e49-3.36.1
  • ardana-freezer >= 8.0+git.1586539529.b7d295f-3.21.1
  • ardana-input-model >= 8.0+git.1589740934.0e0ad61-3.39.1
  • ardana-logging >= 8.0+git.1591194866.b7375d0-3.24.1
  • ardana-mq >= 8.0+git.1589715269.62ad6df-3.22.1
  • ardana-neutron >= 8.0+git.1590756744.ba84abc-3.42.1
  • ardana-octavia >= 8.0+git.1590100427.cf4cc8f-3.29.1
  • ardana-osconfig >= 8.0+git.1587034587.eac37b8-3.45.1
  • caasp-openstack-heat-templates >= 1.0+git.1560518045.ad7dc6d-4.18.1
  • documentation-hpe-helion-openstack-installation >= 8.20200527-1.26.1
  • documentation-hpe-helion-openstack-operations >= 8.20200527-1.26.1
  • documentation-hpe-helion-openstack-opsconsole >= 8.20200527-1.26.1
  • documentation-hpe-helion-openstack-planning >= 8.20200527-1.26.1
  • documentation-hpe-helion-openstack-security >= 8.20200527-1.26.1
  • documentation-hpe-helion-openstack-user >= 8.20200527-1.26.1
  • grafana >= 4.6.5-4.9.1
  • kibana >= 4.6.3-3.3.1
  • openstack-dashboard >= 12.0.5~dev3-3.26.1
  • openstack-dashboard-theme-HPE >= 8+git.1523473653.6599ec8-3.3.1
  • openstack-heat-templates >= 0.0.0+git.1582270132.8a20477-3.15.1
  • openstack-keystone >= 12.0.4~dev11-5.33.2
  • openstack-keystone-doc >= 12.0.4~dev11-5.33.2
  • openstack-monasca-agent >= 2.2.6~dev4-3.18.1
  • openstack-monasca-installer >= 20190923_16.32-3.12.1
  • openstack-neutron >= 11.0.9~dev65-3.33.2
  • openstack-neutron-dhcp-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-doc >= 11.0.9~dev65-3.33.2
  • openstack-neutron-ha-tool >= 11.0.9~dev65-3.33.2
  • openstack-neutron-l3-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-linuxbridge-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-macvtap-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-metadata-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-metering-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-openvswitch-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-server >= 11.0.9~dev65-3.33.2
  • openstack-octavia-amphora-image-x86_64 >= 0.1.4-3.12.2
  • python-Django >= 1.11.23-3.15.1
  • python-Flask >= 0.12.1-3.3.1
  • python-GitPython >= 2.1.8-3.3.1
  • python-Pillow >= 4.2.1-3.5.1
  • python-amqp >= 2.4.2-3.12.1
  • python-apicapi >= 1.6.0-3.6.1
  • python-horizon >= 12.0.5~dev3-3.26.1
  • python-keystone >= 12.0.4~dev11-5.33.2
  • python-keystoneauth1 >= 3.1.2~dev2-3.3.1
  • python-monasca-agent >= 2.2.6~dev4-3.18.1
  • python-neutron >= 11.0.9~dev65-3.33.2
  • python-oslo.messaging >= 5.30.8-3.11.1
  • python-psutil >= 5.2.2-3.3.1
  • python-pyroute2 >= 0.4.21-3.3.1
  • python-pysaml2 >= 4.0.2-5.6.1
  • python-tooz >= 1.58.1-3.3.1
  • python-waitress >= 1.4.3-3.3.1
  • storm >= 1.1.3-3.3.1
  • storm-nimbus >= 1.1.3-3.3.1
  • storm-supervisor >= 1.1.3-3.3.1
  • venv-openstack-aodh-x86_64 >= 5.1.1~dev7-12.26.2
  • venv-openstack-barbican-x86_64 >= 5.0.2~dev3-12.27.2
  • venv-openstack-ceilometer-x86_64 >= 9.0.8~dev7-12.24.2
  • venv-openstack-cinder-x86_64 >= 11.2.3~dev23-14.27.2
  • venv-openstack-designate-x86_64 >= 5.0.3~dev7-12.25.2
  • venv-openstack-freezer-x86_64 >= 5.0.0.0~xrc2~dev2-10.22.1
  • venv-openstack-glance-x86_64 >= 15.0.3~dev3-12.25.1
  • venv-openstack-heat-x86_64 >= 9.0.8~dev22-12.27.1
  • venv-openstack-horizon-hpe-x86_64 >= 12.0.5~dev3-14.30.1
  • venv-openstack-ironic-x86_64 >= 9.1.8~dev8-12.27.2
  • venv-openstack-keystone-x86_64 >= 12.0.4~dev11-11.28.2
  • venv-openstack-magnum-x86_64 >= 5.0.2_5.0.2_5.0.2~dev31-11.26.2
  • venv-openstack-manila-x86_64 >= 5.1.1~dev5-12.31.2
  • venv-openstack-monasca-ceilometer-x86_64 >= 1.5.1_1.5.1_1.5.1~dev3-8.22.2
  • venv-openstack-monasca-x86_64 >= 2.2.2~dev1-11.22.3
  • venv-openstack-murano-x86_64 >= 4.0.2~dev2-12.22.1
  • venv-openstack-neutron-x86_64 >= 11.0.9~dev65-13.30.2
  • venv-openstack-nova-x86_64 >= 16.1.9~dev61-11.28.2
  • venv-openstack-octavia-x86_64 >= 1.0.6~dev3-12.27.2
  • venv-openstack-sahara-x86_64 >= 7.0.5~dev4-11.26.2
  • venv-openstack-swift-x86_64 >= 2.15.2_2.15.2_2.15.2~dev32-11.18.1
  • venv-openstack-trove-x86_64 >= 8.0.2~dev2-11.26.1
Patchnames:
HPE-Helion-OpenStack-8-2020-1901
SUSE OpenStack Cloud 7
  • ansible >= 2.2.3.0-12.2
  • crowbar-core >= 4.0+git.1580209654.1d112d31f-9.66.5
  • crowbar-core-branding-upstream >= 4.0+git.1580209654.1d112d31f-9.66.5
  • crowbar-ha >= 4.0+git.1585316203.d6ad2c8-4.52.4
  • crowbar-openstack >= 4.0+git.1589804581.9972163f0-9.71.4
  • grafana >= 4.6.5-1.14.1
  • keepalived >= 2.0.19-1.8.1
  • kibana >= 4.6.3-5.1
  • memcached >= 1.5.17-3.6.1
  • monasca-installer >= 20180608_12.47-12.1
  • openstack-dashboard-theme-SUSE >= 2016.2-5.12.4
  • openstack-manila >= 3.0.1~dev30-4.12.2
  • openstack-manila-api >= 3.0.1~dev30-4.12.2
  • openstack-manila-data >= 3.0.1~dev30-4.12.2
  • openstack-manila-doc >= 3.0.1~dev30-4.12.3
  • openstack-manila-scheduler >= 3.0.1~dev30-4.12.2
  • openstack-manila-share >= 3.0.1~dev30-4.12.2
  • openstack-neutron-fwaas >= 9.0.2~dev5-4.9.3
  • openstack-neutron-fwaas-doc >= 9.0.2~dev5-4.9.4
  • openstack-nova >= 14.0.11~dev13-4.40.2
  • openstack-nova-api >= 14.0.11~dev13-4.40.2
  • openstack-nova-cells >= 14.0.11~dev13-4.40.2
  • openstack-nova-cert >= 14.0.11~dev13-4.40.2
  • openstack-nova-compute >= 14.0.11~dev13-4.40.2
  • openstack-nova-conductor >= 14.0.11~dev13-4.40.2
  • openstack-nova-console >= 14.0.11~dev13-4.40.2
  • openstack-nova-consoleauth >= 14.0.11~dev13-4.40.2
  • openstack-nova-doc >= 14.0.11~dev13-4.40.2
  • openstack-nova-novncproxy >= 14.0.11~dev13-4.40.2
  • openstack-nova-placement-api >= 14.0.11~dev13-4.40.2
  • openstack-nova-scheduler >= 14.0.11~dev13-4.40.2
  • openstack-nova-serialproxy >= 14.0.11~dev13-4.40.2
  • openstack-nova-vncproxy >= 14.0.11~dev13-4.40.2
  • openstack-tempest >= 12.2.1~a0~dev177-4.9.1
  • openstack-tempest-test >= 12.2.1~a0~dev177-4.9.1
  • python-Django >= 1.8.19-3.23.1
  • python-Pillow >= 2.8.1-4.12.1
  • python-manila >= 3.0.1~dev30-4.12.2
  • python-neutron-fwaas >= 9.0.2~dev5-4.9.3
  • python-nova >= 14.0.11~dev13-4.40.2
  • python-psql2mysql >= 0.5.0+git.1589351878.4ef877c-1.12.1
  • python-psutil >= 1.2.1-21.1
  • python-py >= 1.8.1-11.12.1
  • python-pysaml2 >= 4.0.2-3.17.1
  • python-tempest >= 12.2.1~a0~dev177-4.9.1
  • python-waitress >= 1.4.3-3.3.1
  • rabbitmq-server >= 3.4.4-3.16.1
  • rabbitmq-server-plugins >= 3.4.4-3.16.1
  • release-notes-suse-openstack-cloud >= 7.20180803-3.18.3
  • ruby2.1-rubygem-activeresource >= 4.0.0-3.3.1
  • ruby2.1-rubygem-crowbar-client >= 3.9.2-7.20.1
  • ruby2.1-rubygem-json-1_7 >= 1.7.7-3.3.1
  • ruby2.1-rubygem-puma >= 2.16.0-4.6.1
  • zookeeper-server >= 3.4.10-6.1
Patchnames:
SUSE-OpenStack-Cloud-7-2020-2072
SUSE OpenStack Cloud 8
  • ansible >= 2.4.6.0-3.9.1
  • ansible1 >= 1.9.6-7.3.1
  • ardana-ansible >= 8.0+git.1589740980.6c3bcdc-3.73.1
  • ardana-cluster >= 8.0+git.1585685203.3e71e49-3.36.1
  • ardana-freezer >= 8.0+git.1586539529.b7d295f-3.21.1
  • ardana-input-model >= 8.0+git.1589740934.0e0ad61-3.39.1
  • ardana-logging >= 8.0+git.1591194866.b7375d0-3.24.1
  • ardana-mq >= 8.0+git.1589715269.62ad6df-3.22.1
  • ardana-neutron >= 8.0+git.1590756744.ba84abc-3.42.1
  • ardana-octavia >= 8.0+git.1590100427.cf4cc8f-3.29.1
  • ardana-osconfig >= 8.0+git.1587034587.eac37b8-3.45.1
  • caasp-openstack-heat-templates >= 1.0+git.1560518045.ad7dc6d-4.18.1
  • documentation-suse-openstack-cloud-installation >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-operations >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-opsconsole >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-planning >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-security >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-supplement >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-upstream-admin >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-upstream-user >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-user >= 8.20200527-1.26.1
  • grafana >= 4.6.5-4.9.1
  • kibana >= 4.6.3-3.3.1
  • openstack-dashboard >= 12.0.5~dev3-3.26.1
  • openstack-heat-templates >= 0.0.0+git.1582270132.8a20477-3.15.1
  • openstack-keystone >= 12.0.4~dev11-5.33.2
  • openstack-keystone-doc >= 12.0.4~dev11-5.33.2
  • openstack-monasca-agent >= 2.2.6~dev4-3.18.1
  • openstack-monasca-installer >= 20190923_16.32-3.12.1
  • openstack-neutron >= 11.0.9~dev65-3.33.2
  • openstack-neutron-dhcp-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-doc >= 11.0.9~dev65-3.33.2
  • openstack-neutron-ha-tool >= 11.0.9~dev65-3.33.2
  • openstack-neutron-l3-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-linuxbridge-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-macvtap-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-metadata-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-metering-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-openvswitch-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-server >= 11.0.9~dev65-3.33.2
  • openstack-octavia-amphora-image-x86_64 >= 0.1.4-3.12.2
  • python-Django >= 1.11.23-3.15.1
  • python-Flask >= 0.12.1-3.3.1
  • python-GitPython >= 2.1.8-3.3.1
  • python-Pillow >= 4.2.1-3.5.1
  • python-amqp >= 2.4.2-3.12.1
  • python-apicapi >= 1.6.0-3.6.1
  • python-horizon >= 12.0.5~dev3-3.26.1
  • python-keystone >= 12.0.4~dev11-5.33.2
  • python-keystoneauth1 >= 3.1.2~dev2-3.3.1
  • python-monasca-agent >= 2.2.6~dev4-3.18.1
  • python-neutron >= 11.0.9~dev65-3.33.2
  • python-oslo.messaging >= 5.30.8-3.11.1
  • python-psutil >= 5.2.2-3.3.1
  • python-pyroute2 >= 0.4.21-3.3.1
  • python-pysaml2 >= 4.0.2-5.6.1
  • python-tooz >= 1.58.1-3.3.1
  • python-waitress >= 1.4.3-3.3.1
  • storm >= 1.1.3-3.3.1
  • storm-nimbus >= 1.1.3-3.3.1
  • storm-supervisor >= 1.1.3-3.3.1
  • venv-openstack-aodh-x86_64 >= 5.1.1~dev7-12.26.2
  • venv-openstack-barbican-x86_64 >= 5.0.2~dev3-12.27.2
  • venv-openstack-ceilometer-x86_64 >= 9.0.8~dev7-12.24.2
  • venv-openstack-cinder-x86_64 >= 11.2.3~dev23-14.27.2
  • venv-openstack-designate-x86_64 >= 5.0.3~dev7-12.25.2
  • venv-openstack-freezer-x86_64 >= 5.0.0.0~xrc2~dev2-10.22.1
  • venv-openstack-glance-x86_64 >= 15.0.3~dev3-12.25.1
  • venv-openstack-heat-x86_64 >= 9.0.8~dev22-12.27.1
  • venv-openstack-horizon-x86_64 >= 12.0.5~dev3-14.30.1
  • venv-openstack-ironic-x86_64 >= 9.1.8~dev8-12.27.2
  • venv-openstack-keystone-x86_64 >= 12.0.4~dev11-11.28.2
  • venv-openstack-magnum-x86_64 >= 5.0.2_5.0.2_5.0.2~dev31-11.26.2
  • venv-openstack-manila-x86_64 >= 5.1.1~dev5-12.31.2
  • venv-openstack-monasca-ceilometer-x86_64 >= 1.5.1_1.5.1_1.5.1~dev3-8.22.2
  • venv-openstack-monasca-x86_64 >= 2.2.2~dev1-11.22.3
  • venv-openstack-murano-x86_64 >= 4.0.2~dev2-12.22.1
  • venv-openstack-neutron-x86_64 >= 11.0.9~dev65-13.30.2
  • venv-openstack-nova-x86_64 >= 16.1.9~dev61-11.28.2
  • venv-openstack-octavia-x86_64 >= 1.0.6~dev3-12.27.2
  • venv-openstack-sahara-x86_64 >= 7.0.5~dev4-11.26.2
  • venv-openstack-swift-x86_64 >= 2.15.2_2.15.2_2.15.2~dev32-11.18.1
  • venv-openstack-trove-x86_64 >= 8.0.2~dev2-11.26.1
Patchnames:
SUSE-OpenStack-Cloud-8-2020-1901
SUSE OpenStack Cloud 9
  • ardana-cassandra >= 9.0+git.1600802664.7e480a2-3.6.2
  • ardana-mq >= 9.0+git.1605174486.a78ddce-3.19.2
  • ardana-osconfig >= 9.0+git.1601621747.a87e5a0-3.22.2
  • ardana-tempest >= 9.0+git.1603378983.fc0bca9-3.19.2
  • grafana >= 6.7.4-3.20.1
  • influxdb >= 1.3.8-4.3.3
  • openstack-cinder >= 13.0.10~dev20-3.28.2
  • openstack-cinder-api >= 13.0.10~dev20-3.28.2
  • openstack-cinder-backup >= 13.0.10~dev20-3.28.2
  • openstack-cinder-scheduler >= 13.0.10~dev20-3.28.2
  • openstack-cinder-volume >= 13.0.10~dev20-3.28.2
  • openstack-heat >= 11.0.4~dev4-3.19.2
  • openstack-heat-api >= 11.0.4~dev4-3.19.2
  • openstack-heat-api-cfn >= 11.0.4~dev4-3.19.2
  • openstack-heat-engine >= 11.0.4~dev4-3.19.2
  • openstack-heat-gbp >= 12.0.1~dev2-3.3.4
  • openstack-heat-plugin-heat_docker >= 11.0.4~dev4-3.19.2
  • openstack-heat-templates >= 0.0.0+git.1605509190.64f020b6-3.9.3
  • openstack-horizon-plugin-gbp-ui >= 12.0.1~dev3-3.3.4
  • openstack-ironic-python-agent >= 3.3.4~dev6-3.19.4
  • openstack-manila >= 7.4.2~dev57-4.30.2
  • openstack-manila-api >= 7.4.2~dev57-4.30.2
  • openstack-manila-data >= 7.4.2~dev57-4.30.2
  • openstack-manila-scheduler >= 7.4.2~dev57-4.30.2
  • openstack-manila-share >= 7.4.2~dev57-4.30.2
  • openstack-neutron >= 13.0.8~dev135-3.31.2
  • openstack-neutron-dhcp-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-gbp >= 12.0.1~dev5-3.19.4
  • openstack-neutron-ha-tool >= 13.0.8~dev135-3.31.2
  • openstack-neutron-l3-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-linuxbridge-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-macvtap-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-metadata-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-metering-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-openvswitch-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-server >= 13.0.8~dev135-3.31.2
  • openstack-neutron-vpnaas >= 13.0.2~dev6-3.9.2
  • openstack-neutron-vyatta-agent >= 13.0.2~dev6-3.9.2
  • openstack-nova >= 18.3.1~dev77-3.31.2
  • openstack-nova-api >= 18.3.1~dev77-3.31.2
  • openstack-nova-cells >= 18.3.1~dev77-3.31.2
  • openstack-nova-compute >= 18.3.1~dev77-3.31.2
  • openstack-nova-conductor >= 18.3.1~dev77-3.31.2
  • openstack-nova-console >= 18.3.1~dev77-3.31.2
  • openstack-nova-novncproxy >= 18.3.1~dev77-3.31.2
  • openstack-nova-placement-api >= 18.3.1~dev77-3.31.2
  • openstack-nova-scheduler >= 18.3.1~dev77-3.31.2
  • openstack-nova-serialproxy >= 18.3.1~dev77-3.31.2
  • openstack-nova-vncproxy >= 18.3.1~dev77-3.31.2
  • python-Jinja2 >= 2.10.1-3.3.3
  • python-cinder >= 13.0.10~dev20-3.28.2
  • python-heat >= 11.0.4~dev4-3.19.2
  • python-heat-gbp >= 12.0.1~dev2-3.3.4
  • python-horizon-plugin-gbp-ui >= 12.0.1~dev3-3.3.4
  • python-manila >= 7.4.2~dev57-4.30.2
  • python-neutron >= 13.0.8~dev135-3.31.2
  • python-neutron-gbp >= 12.0.1~dev5-3.19.4
  • python-neutron-vpnaas >= 13.0.2~dev6-3.9.2
  • python-neutron-vpnaas-tempest-plugin >= 13.0.2~dev6-3.9.2
  • python-nova >= 18.3.1~dev77-3.31.2
  • python-pysaml2 >= 4.5.0-4.3.3
  • python-pytest >= 3.7.4-3.3.3
  • python-urllib3 >= 1.23-3.15.3
  • release-notes-suse-openstack-cloud >= 9.20200917-3.24.3
  • spark >= 2.2.3-5.3.3
  • venv-openstack-barbican-x86_64 >= 7.0.1~dev24-3.21.2
  • venv-openstack-cinder-x86_64 >= 13.0.10~dev20-3.24.2
  • venv-openstack-designate-x86_64 >= 7.0.2~dev2-3.21.2
  • venv-openstack-glance-x86_64 >= 17.0.1~dev30-3.19.2
  • venv-openstack-heat-x86_64 >= 11.0.4~dev4-3.21.2
  • venv-openstack-horizon-x86_64 >= 14.1.1~dev7-4.23.2
  • venv-openstack-ironic-x86_64 >= 11.1.5~dev16-4.19.2
  • venv-openstack-keystone-x86_64 >= 14.2.1~dev4-3.21.2
  • venv-openstack-magnum-x86_64 >= 7.2.1~dev1-4.21.2
  • venv-openstack-manila-x86_64 >= 7.4.2~dev57-3.25.2
  • venv-openstack-monasca-ceilometer-x86_64 >= 1.8.2~dev3-3.21.2
  • venv-openstack-monasca-x86_64 >= 2.7.1~dev10-3.19.2
  • venv-openstack-neutron-x86_64 >= 13.0.8~dev135-6.23.2
  • venv-openstack-nova-x86_64 >= 18.3.1~dev77-3.23.2
  • venv-openstack-octavia-x86_64 >= 3.2.3~dev7-4.21.2
  • venv-openstack-sahara-x86_64 >= 9.0.2~dev15-3.21.2
  • venv-openstack-swift-x86_64 >= 2.19.2~dev48-2.16.2
Patchnames:
SUSE-OpenStack-Cloud-9-2020-3897
SUSE OpenStack Cloud Crowbar 8
  • ansible >= 2.4.6.0-3.9.1
  • caasp-openstack-heat-templates >= 1.0+git.1560518045.ad7dc6d-4.18.1
  • crowbar-core >= 5.0+git.1593156248.55bbdb26d-3.41.2
  • crowbar-core-branding-upstream >= 5.0+git.1593156248.55bbdb26d-3.41.2
  • crowbar-openstack >= 5.0+git.1593085772.64c4ab43c-4.40.2
  • documentation-suse-openstack-cloud-deployment >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-supplement >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-upstream-admin >= 8.20200527-1.26.1
  • documentation-suse-openstack-cloud-upstream-user >= 8.20200527-1.26.1
  • grafana >= 4.6.5-4.9.1
  • kibana >= 4.6.3-3.3.1
  • openstack-dashboard >= 12.0.5~dev3-3.26.1
  • openstack-heat-templates >= 0.0.0+git.1582270132.8a20477-3.15.1
  • openstack-keystone >= 12.0.4~dev11-5.33.2
  • openstack-keystone-doc >= 12.0.4~dev11-5.33.2
  • openstack-monasca-agent >= 2.2.6~dev4-3.18.1
  • openstack-monasca-installer >= 20190923_16.32-3.12.1
  • openstack-neutron >= 11.0.9~dev65-3.33.2
  • openstack-neutron-dhcp-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-doc >= 11.0.9~dev65-3.33.2
  • openstack-neutron-ha-tool >= 11.0.9~dev65-3.33.2
  • openstack-neutron-l3-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-linuxbridge-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-macvtap-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-metadata-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-metering-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-openvswitch-agent >= 11.0.9~dev65-3.33.2
  • openstack-neutron-server >= 11.0.9~dev65-3.33.2
  • openstack-octavia-amphora-image-x86_64 >= 0.1.4-3.12.2
  • python-Django >= 1.11.23-3.15.1
  • python-Flask >= 0.12.1-3.3.1
  • python-Pillow >= 4.2.1-3.5.1
  • python-amqp >= 2.4.2-3.12.1
  • python-apicapi >= 1.6.0-3.6.1
  • python-horizon >= 12.0.5~dev3-3.26.1
  • python-keystone >= 12.0.4~dev11-5.33.2
  • python-keystoneauth1 >= 3.1.2~dev2-3.3.1
  • python-monasca-agent >= 2.2.6~dev4-3.18.1
  • python-neutron >= 11.0.9~dev65-3.33.2
  • python-oslo.messaging >= 5.30.8-3.11.1
  • python-psutil >= 5.2.2-3.3.1
  • python-pyroute2 >= 0.4.21-3.3.1
  • python-pysaml2 >= 4.0.2-5.6.1
  • python-tooz >= 1.58.1-3.3.1
  • python-waitress >= 1.4.3-3.3.1
  • ruby2.1-rubygem-activeresource >= 4.0.0-3.3.1
  • ruby2.1-rubygem-crowbar-client >= 3.9.2-3.12.1
  • ruby2.1-rubygem-json-1_7 >= 1.7.7-3.3.1
  • ruby2.1-rubygem-puma >= 2.16.0-3.9.1
  • storm >= 1.1.3-3.3.1
  • storm-nimbus >= 1.1.3-3.3.1
  • storm-supervisor >= 1.1.3-3.3.1
Patchnames:
SUSE-OpenStack-Cloud-Crowbar-8-2020-1901
SUSE OpenStack Cloud Crowbar 9
  • crowbar-core >= 6.0+git.1606314264.bf9ada813-3.31.2
  • crowbar-core-branding-upstream >= 6.0+git.1606314264.bf9ada813-3.31.2
  • crowbar-openstack >= 6.0+git.1604573541.bb18c172d-3.28.3
  • grafana >= 6.7.4-3.20.1
  • influxdb >= 1.3.8-4.3.3
  • openstack-cinder >= 13.0.10~dev20-3.28.2
  • openstack-cinder-api >= 13.0.10~dev20-3.28.2
  • openstack-cinder-backup >= 13.0.10~dev20-3.28.2
  • openstack-cinder-scheduler >= 13.0.10~dev20-3.28.2
  • openstack-cinder-volume >= 13.0.10~dev20-3.28.2
  • openstack-heat >= 11.0.4~dev4-3.19.2
  • openstack-heat-api >= 11.0.4~dev4-3.19.2
  • openstack-heat-api-cfn >= 11.0.4~dev4-3.19.2
  • openstack-heat-engine >= 11.0.4~dev4-3.19.2
  • openstack-heat-gbp >= 12.0.1~dev2-3.3.4
  • openstack-heat-plugin-heat_docker >= 11.0.4~dev4-3.19.2
  • openstack-heat-templates >= 0.0.0+git.1605509190.64f020b6-3.9.3
  • openstack-horizon-plugin-gbp-ui >= 12.0.1~dev3-3.3.4
  • openstack-ironic-python-agent >= 3.3.4~dev6-3.19.4
  • openstack-manila >= 7.4.2~dev57-4.30.2
  • openstack-manila-api >= 7.4.2~dev57-4.30.2
  • openstack-manila-data >= 7.4.2~dev57-4.30.2
  • openstack-manila-scheduler >= 7.4.2~dev57-4.30.2
  • openstack-manila-share >= 7.4.2~dev57-4.30.2
  • openstack-neutron >= 13.0.8~dev135-3.31.2
  • openstack-neutron-dhcp-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-gbp >= 12.0.1~dev5-3.19.4
  • openstack-neutron-ha-tool >= 13.0.8~dev135-3.31.2
  • openstack-neutron-l3-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-linuxbridge-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-macvtap-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-metadata-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-metering-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-openvswitch-agent >= 13.0.8~dev135-3.31.2
  • openstack-neutron-server >= 13.0.8~dev135-3.31.2
  • openstack-neutron-vpnaas >= 13.0.2~dev6-3.9.2
  • openstack-neutron-vyatta-agent >= 13.0.2~dev6-3.9.2
  • openstack-nova >= 18.3.1~dev77-3.31.2
  • openstack-nova-api >= 18.3.1~dev77-3.31.2
  • openstack-nova-cells >= 18.3.1~dev77-3.31.2
  • openstack-nova-compute >= 18.3.1~dev77-3.31.2
  • openstack-nova-conductor >= 18.3.1~dev77-3.31.2
  • openstack-nova-console >= 18.3.1~dev77-3.31.2
  • openstack-nova-novncproxy >= 18.3.1~dev77-3.31.2
  • openstack-nova-placement-api >= 18.3.1~dev77-3.31.2
  • openstack-nova-scheduler >= 18.3.1~dev77-3.31.2
  • openstack-nova-serialproxy >= 18.3.1~dev77-3.31.2
  • openstack-nova-vncproxy >= 18.3.1~dev77-3.31.2
  • python-Jinja2 >= 2.10.1-3.3.3
  • python-cinder >= 13.0.10~dev20-3.28.2
  • python-heat >= 11.0.4~dev4-3.19.2
  • python-heat-gbp >= 12.0.1~dev2-3.3.4
  • python-horizon-plugin-gbp-ui >= 12.0.1~dev3-3.3.4
  • python-manila >= 7.4.2~dev57-4.30.2
  • python-neutron >= 13.0.8~dev135-3.31.2
  • python-neutron-gbp >= 12.0.1~dev5-3.19.4
  • python-neutron-vpnaas >= 13.0.2~dev6-3.9.2
  • python-neutron-vpnaas-tempest-plugin >= 13.0.2~dev6-3.9.2
  • python-nova >= 18.3.1~dev77-3.31.2
  • python-pysaml2 >= 4.5.0-4.3.3
  • python-pytest >= 3.7.4-3.3.3
  • python-urllib3 >= 1.23-3.15.3
  • release-notes-suse-openstack-cloud >= 9.20200917-3.24.3
  • spark >= 2.2.3-5.3.3
Patchnames:
SUSE-OpenStack-Cloud-Crowbar-9-2020-3897
openSUSE Tumbleweed
  • python36-pysaml2 >= 7.0.1-1.2
  • python38-pysaml2 >= 7.0.1-1.2
  • python39-pysaml2 >= 7.0.1-1.2
Patchnames:
openSUSE Tumbleweed GA python36-pysaml2-7.0.1-1.2


Status of this issue by product and package

Please note that this evaluation state might be work in progress, incomplete or outdated. Also information for service packs in the LTSS phase is only included for issues meeting the LTSS criteria. If in doubt, feel free to contact us for clarification.

Product(s) Source package State
HPE Helion OpenStack 8 python-pysaml2 Released
HPE Helion OpenStack Cloud 8 python-pysaml2 Affected
SUSE OpenStack Cloud 6 LTSS python-pysaml2 Affected
SUSE OpenStack Cloud 7 python-pysaml2 Released
SUSE OpenStack Cloud 8 python-pysaml2 Released
SUSE OpenStack Cloud 9 python-pysaml2 Released
SUSE OpenStack Cloud Crowbar 8 python-pysaml2 Released
SUSE OpenStack Cloud Crowbar 9 python-pysaml2 Released