Comment 58 for bug 1449062

Revision history for this message
Tristan Cacqueray (tristan-cacqueray) wrote : Re: qemu-img calls need to be restricted by ulimit (CVE-2015-5162)

Here is a recap of all related patches,

master/newton (oslo.concurrency-3.8.0):
* https://review.openstack.org/243829 oslo.concurrency prlimit (merged in 3.7.1)
* https://review.openstack.org/307813 oslo.concurrency process limit (not merged in 3.7.1)
* https://review.openstack.org/307663 nova fix

stable/mitaka (oslo.concurrency-3.7.1):
* https://review.openstack.org/326327 nova backport
* https://review.openstack.org/327774 oslo.concurrency process limit backport

stable/liberty (oslo.concurrency-2.6.1):
* https://review.openstack.org/327624 nova backport
* https://review.openstack.org/327630 oslo.concurrency prlimit backport
* https://review.openstack.org/332222 oslo.concurrency process limit backport

It seems like we only need 327624 to move on the OSSA task. Is there something like a global requirement change we are waiting for ?