Change log for barbican package in Ubuntu

150 of 115 results
Published in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
barbican (2:17.0.0-0ubuntu2) mantic; urgency=medium

  * d/p/install-missing-db-files.patch: Install missing db files, including
    barbican/model/migration/ files.

 -- Corey Bryant <email address hidden>  Thu, 05 Oct 2023 17:12:43 -0400
Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
barbican (2:17.0.0-0ubuntu1) mantic; urgency=medium

  * New upstream release for OpenStack Bobcat.

 -- Corey Bryant <email address hidden>  Wed, 04 Oct 2023 08:47:37 -0400
Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
barbican (2:16.0.0+git2023090509.c8e3dc14-0ubuntu1) mantic; urgency=medium

  * New upstream snapshot for OpenStack Bobcat.

 -- Corey Bryant <email address hidden>  Tue, 05 Sep 2023 09:14:10 -0400
Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
barbican (2:16.0.0+git2023071213.d929cd84-0ubuntu1) mantic; urgency=medium

  * d/gbp.conf, .launchpad.yaml: Sync from cloud-archive-tools for
    bobcat.
  * New upstream snapshot for OpenStack Bobcat.
  * d/control: Align (Build-)Depends with upstream.

 -- Corey Bryant <email address hidden>  Wed, 12 Jul 2023 13:58:18 -0400
Superseded in mantic-release
Published in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
barbican (2:16.0.0-0ubuntu1) lunar; urgency=medium

  * New upstream release for OpenStack Antelope.

 -- Corey Bryant <email address hidden>  Thu, 23 Mar 2023 14:16:52 -0400
Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
barbican (2:16.0.0~rc1-0ubuntu1) lunar; urgency=medium

  * d/watch: Drop major version.
  * New upstream release for OpenStack Antelope.

 -- Corey Bryant <email address hidden>  Wed, 01 Mar 2023 11:12:21 -0500
Published in kinetic-updates
Deleted in kinetic-proposed (Reason: moved to -updates)
barbican (2:15.0.1-0ubuntu1) kinetic; urgency=medium

  * d/gbp.conf: Create stable/zed branch.
  * New stable point release for OpenStack Zed (LP: #2004029).

 -- Corey Bryant <email address hidden>  Fri, 27 Jan 2023 10:52:41 -0500
Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
barbican (2:15.0.1+git2023011009.aba0bd07-0ubuntu1) lunar; urgency=medium

  * New upstream snapshot for OpenStack Antelope.
  * d/control: Align (Build-)Depends with upstream.
  * d/py3dist-overrides: Added to ignore ldap3.
  * d/p/ldap3-to-ldap.patch: Rebased.

 -- Corey Bryant <email address hidden>  Tue, 10 Jan 2023 09:33:00 -0500
Published in jammy-updates
Deleted in jammy-proposed (Reason: moved to -updates)
barbican (2:14.0.2-0ubuntu1) jammy; urgency=medium

  * d/gbp.conf: Create stable/yoga branch.
  * New stable point release for OpenStack Yoga (LP: #1998545).

 -- Corey Bryant <email address hidden>  Thu, 01 Dec 2022 20:18:05 -0500
Superseded in lunar-release
Published in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
barbican (2:15.0.0-0ubuntu1) kinetic; urgency=medium

  * d/watch: Scope to 15.x.
  * New upstream release for OpenStack Zed.

 -- Corey Bryant <email address hidden>  Wed, 05 Oct 2022 14:26:49 -0400
Published in bionic-updates
Published in bionic-security
barbican (1:6.0.1-0ubuntu1.2) bionic-security; urgency=medium

  * SECURITY UPDATE: access policy bypass via query string injection
    - debian/patches/CVE-2022-3100.patch: don't use contents of query
      string in barbican/api/controllers/__init__.py.
    - CVE-2022-3100

 -- Marc Deslauriers <email address hidden>  Wed, 05 Oct 2022 09:35:33 -0400
Published in focal-updates
Published in focal-security
barbican (1:10.1.0-0ubuntu2.2) focal-security; urgency=medium

  * SECURITY UPDATE: access policy bypass via query string injection
    - debian/patches/CVE-2022-3100.patch: don't use contents of query
      string in barbican/api/controllers/__init__.py.
    - CVE-2022-3100

 -- Marc Deslauriers <email address hidden>  Wed, 05 Oct 2022 09:31:21 -0400
Superseded in jammy-updates
Published in jammy-security
barbican (2:14.0.0-0ubuntu1.1) jammy-security; urgency=medium

  * SECURITY UPDATE: access policy bypass via query string injection
    - debian/patches/CVE-2022-3100.patch: don't use contents of query
      string in barbican/api/controllers/__init__.py.
    - CVE-2022-3100

 -- Marc Deslauriers <email address hidden>  Wed, 05 Oct 2022 09:29:42 -0400
Superseded in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
barbican (2:14.0.0+git2022091212.304d5c04-0ubuntu1) kinetic; urgency=medium

  * New upstream snapshot for OpenStack Zed.

 -- Corey Bryant <email address hidden>  Mon, 12 Sep 2022 12:36:34 -0400
Superseded in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
barbican (2:14.0.0+git2022071413.ae22ab00-0ubuntu1) kinetic; urgency=medium

  * New upstream snapshot for OpenStack Zed.
  * d/control: Ensure openstack-pkg-tools has CIS hardening for log files
    and pkgos_adduser.
  * d/barbican-common.postinst: CIS hardening update to switch adduser to use
    /usr/sbin/nologin when creating system account that does not run a shell.

 -- Corey Bryant <email address hidden>  Thu, 14 Jul 2022 13:23:06 -0400
Superseded in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
barbican (2:14.0.0+git2022060116.4bb724c5-0ubuntu1) kinetic; urgency=medium

  * New upstream snapshot for OpenStack Zed.
  * d/control: Align (Build-)Depends with upstream.
  * d/control: Update standards version to 4.6.1.

 -- Corey Bryant <email address hidden>  Wed, 01 Jun 2022 16:15:24 -0400
Superseded in bionic-updates
Superseded in bionic-security
barbican (1:6.0.1-0ubuntu1.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Access restrictions bypass
    - debian/patches/CVE-2022-23451.patch: Change access policies to
      secret metadata in barbican/common/policies/secretmeta.py. Add a new
      role in barbican/common/policies/base.py and make use of these changes
      in barbican/api/controllers/__init__.py,
      barbican/api/controllers/secretmeta.py and
      barbican/api/controllers/secrets.py.
    - debian/patches/CVE-2022-23451-post.patch: Change secret policies in
      barbican/common/policies/secrets.py, add tests in
      barbican/tests/api/test_resources_policy.py and
      functionaltests/api/v1/functional/test_secrets_rbac.py and update
      api guide in api-guide/source/acls.rst.
    - CVE-2022-23451
  * SECURITY UPDATE: Ownership bypass
    - debian/patches/CVE-2022-23452.patch: Update container secret policies
      in barbican/common/policies/containers.py and add a new role in
      barbican/common/policies/base.py.
    - CVE-2022-23452

 -- Rodrigo Figueiredo Zaiden <email address hidden>  Thu, 21 Apr 2022 10:52:20 -0300
Superseded in focal-updates
Superseded in focal-security
barbican (1:10.1.0-0ubuntu2.1) focal-security; urgency=medium

  * SECURITY UPDATE: Access restrictions bypass
    - debian/patches/CVE-2022-23451.patch: Change access policies to
      secret metadata in barbican/common/policies/secretmeta.py. Add a new
      role in barbican/common/policies/base.py and make use of these changes
      in barbican/api/controllers/__init__.py,
      barbican/api/controllers/secretmeta.py and
      barbican/api/controllers/secrets.py.
    - debian/patches/CVE-2022-23451-post.patch: Change secret policies in
      barbican/common/policies/secrets.py, add tests in
      barbican/tests/api/test_resources_policy.py and
      functionaltests/api/v1/functional/test_secrets_rbac.py and update
      api guide in api-guide/source/acls.rst.
    - CVE-2022-23451
  * SECURITY UPDATE: Ownership bypass
    - debian/patches/CVE-2022-23452.patch: Update container secret policies
      in barbican/common/policies/containers.py and add a new role in
      barbican/common/policies/base.py.
    - CVE-2022-23452

 -- Rodrigo Figueiredo Zaiden <email address hidden>  Wed, 20 Apr 2022 18:00:29 -0300
Obsolete in impish-updates
Obsolete in impish-security
barbican (2:13.0.0-0ubuntu1.2) impish-security; urgency=medium

  * SECURITY UPDATE: Access restrictions bypass
    - debian/patches/CVE-2022-23451-1.patch: Change access policies to
      secret metadata in barbican/common/policies/secretmeta.py. Add a new
      role in barbican/common/policies/base.py and make use of these changes
      in barbican/api/controllers/__init__.py,
      barbican/api/controllers/secretmeta.py and
      barbican/api/controllers/secrets.py.
    - debian/patches/CVE-2022-23451-2.patch: Fix secure RBAC rules in
      barbican/common/policies/secretmeta.py
    - debian/patches/CVE-2022-23451-post1.patch: Change consumer controller
      code in barbican/api/controllers/*, change policy rules in
      barbican/common/policies/consumers.py and add tests in
      barbican/tests/api/test_resources_policy.py and
      functionaltests/api/v1/functional/test_acls.py.
    - debian/patches/CVE-2022-23451-post2.patch: Change secret policies in
      barbican/common/policies/secrets.py, add tests in
      barbican/tests/api/test_resources_policy.py and
      functionaltests/api/v1/functional/test_secrets_rbac.py and update
      api guide in api-guide/source/acls.rst.
    - CVE-2022-23451
  * SECURITY UPDATE: Ownership bypass
    - debian/patches/CVE-2022-23452.patch: Update container secret policies
      in barbican/common/policies/containers.py and add a new role in
      barbican/common/policies/base.py.
    - CVE-2022-23452

 -- Rodrigo Figueiredo Zaiden <email address hidden>  Fri, 08 Apr 2022 15:05:16 -0300
Superseded in kinetic-release
Published in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
barbican (2:14.0.0-0ubuntu1) jammy; urgency=medium

  * d/watch: Scope to 14.x.
  * New upstream release for OpenStack Yoga.

 -- Corey Bryant <email address hidden>  Wed, 30 Mar 2022 15:43:44 -0400
Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
barbican (2:13.0.0+git2022030310.ffea7f79-0ubuntu1) jammy; urgency=medium

  * New upstream snapshot for OpenStack Yoga.

 -- Corey Bryant <email address hidden>  Thu, 03 Mar 2022 10:28:52 -0500
Superseded in impish-updates
Deleted in impish-proposed (Reason: moved to -updates)
barbican (2:13.0.0-0ubuntu1.1) impish; urgency=medium

  * d/gbp.conf: Create stable/xena branch.
  * d/control, d/rules: Bump debhelper compat to 12 (LP: #1960636).

 -- Corey Bryant <email address hidden>  Wed, 02 Mar 2022 09:09:54 -0500
Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
barbican (2:13.0.0+git2022011215.a9d2b133-0ubuntu2) jammy; urgency=medium

  * d/barbican-api.conf: use WSGIApplicationGroup %{GLOBAL} (LP: #1959626)
    for python3.10 compatibility

 -- Lukas Märdian <email address hidden>  Mon, 21 Feb 2022 14:43:10 +0100
Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
barbican (2:13.0.0+git2022011215.a9d2b133-0ubuntu1) jammy; urgency=medium

  * New upstream snapshot for OpenStack Yoga.
  * d/control, d/rules: Bump debhelper compat to 13.
  * d/p/skip-cryptography-failure.patch: Skip test until cryptography bug is
    fixed in distro.

 -- Corey Bryant <email address hidden>  Wed, 12 Jan 2022 15:52:17 -0500
Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
barbican (2:13.0.0-0ubuntu2) jammy; urgency=medium

  * d/control: Drop python3-crypto from (Build-)Depends.

 -- James Page <email address hidden>  Fri, 12 Nov 2021 09:22:27 +0000
Superseded in focal-updates
Deleted in focal-proposed (Reason: moved to -updates)
barbican (1:10.1.0-0ubuntu2) focal; urgency=medium

  * d/p/fix-castellan-secret-store-encoding.patch: Fix inconsistent encoding
    of SecretDTO objects (LP: #1946787).

 -- Corey Bryant <email address hidden>  Mon, 01 Nov 2021 14:09:38 -0400
Obsolete in hirsute-updates
Deleted in hirsute-proposed (Reason: moved to -updates)
barbican (2:12.0.0-0ubuntu2) hirsute; urgency=medium

  * d/gbp.conf: Create stable/wallaby branch.
  * d/p/fix-castellan-secret-store-encoding.patch: Fix inconsistent encoding
    of SecretDTO objects (LP: #1946787).

 -- Corey Bryant <email address hidden>  Tue, 12 Oct 2021 14:17:00 -0400
Superseded in jammy-release
Obsolete in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
barbican (2:13.0.0-0ubuntu1) impish; urgency=medium

  * d/watch: Scope to 13.x.
  * New upstream release for OpenStack Xena.

 -- Chris MacNaughton <email address hidden>  Wed, 06 Oct 2021 15:13:23 +0000
Superseded in focal-updates
Deleted in focal-proposed (Reason: moved to -updates)
barbican (1:10.1.0-0ubuntu1) focal; urgency=medium

  * d/watch: Add trailing slash to URL.
  * d/watch: Fix version string parsing.
  * New stable point release for OpenStack Ussuri (LP: #1943712).
  * d/p/resolve-alembic-migration-issue-mysql8.patch: Removed after
    inclusion in upstream release.

 -- Chris MacNaughton <email address hidden>  Fri, 17 Sep 2021 10:05:07 +0000
Superseded in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
barbican (2:12.0.0+git2021090813.aa7bf886-0ubuntu1) impish; urgency=medium

  * New upstream release for OpenStack Xena.

 -- Chris MacNaughton <email address hidden>  Thu, 09 Sep 2021 07:59:54 +0000
Superseded in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
barbican (2:12.0.0+git2021072116.123c73a5-0ubuntu1) impish; urgency=medium

  * New upstream snapshot for OpenStack Xena.

 -- Corey Bryant <email address hidden>  Wed, 21 Jul 2021 16:29:22 -0400
Superseded in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
barbican (2:12.0.0+git2021061111.b5d10b3c-0ubuntu1) impish; urgency=medium

  * New upstream snapshot for OpenStack Xena.
  * d/p/monkey-patch-original-current-thread.patch: Removed, change
    landed upstream.

 -- Chris MacNaughton <email address hidden>  Fri, 11 Jun 2021 11:40:13 +0000
Superseded in impish-release
Obsolete in hirsute-release
Deleted in hirsute-proposed (Reason: Moved to hirsute)
barbican (2:12.0.0-0ubuntu1) hirsute; urgency=medium

  * New upstream release for OpenStack Wallaby.

 -- Corey Bryant <email address hidden>  Wed, 14 Apr 2021 14:48:36 -0400
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: Moved to hirsute)
barbican (2:12.0.0~rc2-0ubuntu1) hirsute; urgency=medium

  * New upstream release candidate for OpenStack Wallaby.

 -- Chris MacNaughton <email address hidden>  Tue, 06 Apr 2021 12:18:05 +0000
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: Moved to hirsute)
barbican (2:12.0.0~rc1-0ubuntu2) hirsute; urgency=medium

  * d/watch: Scope to 12.x series
  * New upstream release candidate for OpenStack Wallaby.
  * d/control: Align (Build-)Depends with upstream.
  * d/p/ldap3-to-ldap.patch: Refreshed.

 -- Chris MacNaughton <email address hidden>  Fri, 02 Apr 2021 06:44:47 +0000
Superseded in focal-updates
Deleted in focal-proposed (Reason: moved to -updates)
barbican (1:10.0.0-0ubuntu0.20.04.3) focal; urgency=medium

  * d/p/resolve-alembic-migration-issue-mysql8.patch: Update .egg-info/SOURCES.txt
    to include new migration and remove old migration.

Superseded in focal-proposed
barbican (1:10.0.0-0ubuntu0.20.04.2) focal; urgency=medium

  * d/control: Update VCS paths for move to lp:~ubuntu-openstack-dev.
  * d/p/resolve-alembic-migration-issue-mysql8.patch: Cherry-pick upstream fix
    to allow migrations to work with mysql8 (LP: #1899104).

 -- Chris MacNaughton <email address hidden>  Thu, 28 Jan 2021 08:15:42 +0000
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
barbican (2:11.0.0+git2021012507.85257b56-0ubuntu1) hirsute; urgency=medium

  * New upstream snapshot for OpenStack Wallaby.
  * d/control: Align (Build-)Depends with upstream.

 -- Chris MacNaughton <email address hidden>  Mon, 25 Jan 2021 08:04:40 +0000
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
barbican (2:11.0.0+git2020121010.1b611db1-0ubuntu1) hirsute; urgency=medium

  * Increment epoch to align with new snapshot plan.
  * New upstream snapshot for OpenStack Wallaby.

 -- Chris MacNaughton <email address hidden>  Thu, 10 Dec 2020 10:28:20 +0000
Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
barbican (1:11.1.0~b1~git2020120715.1b611db1-0ubuntu1) hirsute; urgency=medium

  * New upstream snapshot for OpenStack Wallaby.

 -- Chris MacNaughton <email address hidden>  Mon, 07 Dec 2020 15:17:11 +0000
Superseded in hirsute-release
Obsolete in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
barbican (1:11.0.0-0ubuntu1) groovy; urgency=medium

  * New upstream release for OpenStack Victoria.

 -- Chris MacNaughton <email address hidden>  Thu, 15 Oct 2020 07:26:47 +0000
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
barbican (1:11.0.0~rc1-0ubuntu1) groovy; urgency=medium

  * d/control: Remove Breaks/Replaces that are older than Focal (LP: #1878419).
  * d/control: Update VCS paths for move to lp:~ubuntu-openstack-dev.
  * d/watch: Update to the correct version regex.
  * New upstream release candidate for OpenStack Victoria.

 -- Chris MacNaughton <email address hidden>  Fri, 09 Oct 2020 09:57:14 +0000
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
barbican (1:11.0.0~b2~git2020073012.36b2f658-0ubuntu1) groovy; urgency=medium

  * New upstream snapshot for OpenStack Victoria.
  * d/control: Align (Build-)Depends with upstream.

 -- Chris MacNaughton <email address hidden>  Thu, 30 Jul 2020 12:21:55 +0000
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
barbican (1:11.0.0~b1~git2020062509.df194df8-0ubuntu1) groovy; urgency=medium

  * New upstream snapshot for OpenStack Victoria.
  * d/control: Align (Build-)Depends with upstream.
  * d/p/skip-py38-failures.patch: Dropped. No longer needed.
  * d/p/ldap3-to-ldap.patch: Refreshed.

 -- Chris MacNaughton <email address hidden>  Thu, 25 Jun 2020 09:05:40 +0000
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
barbican (1:10.0.0-0ubuntu1) groovy; urgency=medium

  [ Chris MacNaughton ]
  * d/watch: Update to get release tarballs from opendev.org.
  * New upstream release for OpenStack Ussuri (LP: #1877642).
  * d/watch: update to the correct version regex.

  [ Corey Bryant ]
  * d/watch: Scope to 10.x series.
  * d/p/monkey-patch-original-current-thread.patch: Cherry-picked
    from upstream review (https://review.opendev.org/#/c/725353/)
    to fix Python 3.8 monkey patching (LP: #1863021).

 -- Chris MacNaughton <email address hidden>  Thu, 14 May 2020 08:13:29 +0000
Superseded in focal-updates
Deleted in focal-proposed (Reason: moved to -updates)
barbican (1:10.0.0-0ubuntu0.20.04.1) focal; urgency=medium

  [ Chris MacNaughton ]
  * d/watch: Update to get release tarballs from opendev.org.
  * New upstream release for OpenStack Ussuri (LP: #1877642).
  * d/watch: update to the correct version regex.
  * d/gbp.conf: Create stable/ussuri branch.

  [ Corey Bryant ]
  * d/watch: Scope to 10.x series.
  * d/p/monkey-patch-original-current-thread.patch: Cherry-picked
    from upstream review (https://review.opendev.org/#/c/725353/)
    to fix Python 3.8 monkey patching (LP: #1863021).

 -- Chris MacNaughton <email address hidden>  Thu, 14 May 2020 08:13:29 +0000
Superseded in groovy-release
Published in focal-release
Deleted in focal-proposed (Reason: moved to Release)
barbican (1:10.0.0~b2~git2020020508.7b14d983-0ubuntu3) focal; urgency=medium

  * d/barbican-common.postinst: Set ownership and permissions for all /var/lib
    files and directories.
  * d/control: Ensure python3-castellan is >= 3.0.1 as 3.0.0 is broken.

 -- Corey Bryant <email address hidden>  Fri, 10 Apr 2020 14:24:29 -0400
Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
barbican (1:10.0.0~b2~git2020020508.7b14d983-0ubuntu2) focal; urgency=medium

  * d/barbican-common.postinst: Set default ownership and permissions for
    /etc/<pkg>, /var/lib/<pkg>, and /var/log/<pkg> (LP: #1859422).

 -- Corey Bryant <email address hidden>  Wed, 25 Mar 2020 14:53:42 -0400
Superseded in focal-release
Deleted in focal-proposed (Reason: moved to Release)
barbican (1:10.0.0~b2~git2020020508.7b14d983-0ubuntu1) focal; urgency=medium

  * New upstream snapshot for OpenStack Ussuri.
  * d/control: Align (Build-)Depends with upstream.

 -- Sahid Orentino Ferdjaoui <email address hidden>  Wed, 05 Feb 2020 09:49:40 +0100
Superseded in focal-proposed
barbican (1:10.0.0~b1~git2019121610.d633693b-0ubuntu1) focal; urgency=medium

  * New upstream snapshot for OpenStack Ussuri.
  * d/control: Drop. Dropped Python2 support
  * d/rules: Swith to pybuild
  * d/p/skip-py38-failures.patch: Skip py38 failures until fixed
    upstream.
  * d/p/debian/patches/remove-rsvgconverter.patch: Patch-out
    rsvgconverter.
  * d/p/debian/patches/ldap3-to-ldap.patch: Refreshed.

 -- Sahid Orentino Ferdjaoui <email address hidden>  Mon, 16 Dec 2019 11:12:08 +0100
150 of 115 results