============================ #openstack-meeting: security ============================ Meeting started by gagehugo at 15:00:17 UTC. The full logs are available at http://eavesdrop.openstack.org/meetings/security/2020/security.2020-06-11-15.00.log.html . Meeting summary --------------- * LINK: https://etherpad.opendev.org/p/security-agenda agenda (gagehugo, 15:00:34) * refresh security-doc-core (gagehugo, 15:04:13) * meeting times (gagehugo, 15:14:28) * LINK: http://eavesdrop.openstack.org/irclogs/%23openstack-doc/%23openstack-doc.2020-06-03.log.html#t2020-06-03T17:25:07 security-doc-core discussion with tech writing sig (fungi, 15:19:08) * security sig newsletter (gagehugo, 15:20:56) * clean up security wiki/docs (gagehugo, 15:24:11) * open discussion (gagehugo, 15:25:07) * LINK: Clean up Security SIG Wiki and Guide pages (gagehugo, 15:26:35) * LINK: https://wiki.openstack.org/wiki/OSSN/OSSN-0086 Dell EMC ScaleIO/VxFlex OS Backend Credentials Exposure (fungi, 15:26:40) * LINK: https://launchpad.net/bugs/1866614 CSV Injection in instance edit form in the name field (fungi, 15:29:09) * LINK: https://launchpad.net/bugs/1866725 DVR denial of service observed when using DVR+VLAN project networks (fungi, 15:29:36) * LINK: https://launchpad.net/bugs/1785657 Denial of service through YAML anchors expansion (Billion Laughs) (fungi, 15:31:26) Meeting ended at 15:35:16 UTC. People present (lines said) --------------------------- * gagehugo (34) * fungi (25) * openstack (6) * redrobot (1) Generated by `MeetBot`_ 0.1.4