This is what OSSNs (security notes) have been designed to solve -- informing the public of security best practices around OpenStack, when patching the code does not fully address all concerns.
My suggestion would be for an OSSN to mention the potential image sneaking in previous versions, and to encourage people to run havana glance with enable_v1_api=False if they can ?
This is what OSSNs (security notes) have been designed to solve -- informing the public of security best practices around OpenStack, when patching the code does not fully address all concerns.
My suggestion would be for an OSSN to mention the potential image sneaking in previous versions, and to encourage people to run havana glance with enable_v1_api=False if they can ?