*** Jackneill has quit IRC | 01:08 | |
*** Jackneill has joined #openstack-security | 01:20 | |
*** gyee has quit IRC | 02:11 | |
*** rcernin has quit IRC | 02:37 | |
*** rcernin has joined #openstack-security | 02:48 | |
*** irclogbot_0 has quit IRC | 03:05 | |
*** irclogbot_3 has joined #openstack-security | 03:07 | |
*** rcernin has quit IRC | 03:54 | |
*** rcernin has joined #openstack-security | 04:22 | |
*** rcernin has quit IRC | 09:11 | |
*** rcernin has joined #openstack-security | 09:34 | |
*** markvoelker has joined #openstack-security | 09:45 | |
*** markvoelker has quit IRC | 09:49 | |
*** rcernin has quit IRC | 09:56 | |
*** markvoelker has joined #openstack-security | 10:52 | |
*** markvoelker has quit IRC | 10:56 | |
*** rcernin has joined #openstack-security | 11:31 | |
*** markvoelker has joined #openstack-security | 11:35 | |
*** markvoelker has quit IRC | 11:40 | |
*** Luzi has joined #openstack-security | 12:55 | |
*** Luzi has quit IRC | 13:00 | |
*** dave-mccowan has joined #openstack-security | 13:10 | |
*** dave-mccowan has quit IRC | 13:29 | |
*** rcernin has quit IRC | 14:08 | |
*** rcernin has joined #openstack-security | 14:19 | |
*** rcernin has quit IRC | 14:24 | |
*** sean-k-mooney has joined #openstack-security | 15:20 | |
sean-k-mooney | o/ | 15:20 |
---|---|---|
fungi | ohai | 15:21 |
sean-k-mooney | hi i have a public bug that potentially has security impacts, at this point there is no point in moving it to security since its been public since 2020-06-29 | 15:21 |
sean-k-mooney | should i mark it as public security or what the best way to approch it | 15:21 |
fungi | what's the bug number? i'll take a look and add an ossa bugtask et cetera | 15:21 |
sean-k-mooney | https://bugs.launchpad.net/nova/+bug/1885558 | 15:22 |
openstack | Launchpad bug 1885558 in OpenStack Compute (nova) "sriov: instance with macvtap vnic_type live migration failed" [High,In progress] - Assigned to renminmin (rmm0811) | 15:22 |
fungi | https://security.openstack.org/vmt-process.html also talks about how we handle issues reported in public vs in private | 15:22 |
sean-k-mooney | ah good ill take a look at that. the bug as described is not intially obviously a security issue but there are other failure modes that kind of are | 15:23 |
sean-k-mooney | anyway ill read that now | 15:23 |
fungi | yeah, you could open a separate private security bug for nova detailing the non-obvious risks it poses, and then we can mark them as duplicates when the second bug is made public | 15:24 |
fungi | though unless the impact is really severe, handling it in public is probably better anyway | 15:25 |
sean-k-mooney | sure i can do that. am i can pm you a short description too i would prefer not to say it on the open channel | 15:25 |
fungi | yeah, no problem | 15:27 |
*** gyee has joined #openstack-security | 19:59 | |
*** openstackgerrit has quit IRC | 20:52 | |
-openstackstatus- NOTICE: The openstackgerrit IRC bot (gerritbot) will be offline for a short period while we redeploy it on a new server | 20:53 | |
*** rcernin has joined #openstack-security | 22:46 |
Generated by irclog2html.py 2.17.2 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!