Qa
Threads by month
- ----- 2025 -----
- May
- April
- March
- February
- January
- ----- 2024 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2023 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2022 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2021 -----
- December
- November
- October
- September
- August
- July
- June
- May
- April
- March
- February
- January
- ----- 2020 -----
- December
- November
- October
- September
- August
- July
- June
- May
- 3 participants
- 578 discussions
主题: openEuler update_20231018版本发布公告
Dear all,
经社区Release SIG、QA SIG及 CICD SIG 评估,openEuler-20.03-LTS-SP1、openEuler-20.03-LTS-SP3、openEuler-22.03-LTS、openEuler-22.03-LTS-SP1及openEuler-22.03-LTS-SP2 update版本满足版本出口质量,现进行发布公示。
本公示分为七部分:
1、openEuler-20.03-LTS-SP1 Update 20231018发布情况及待修复缺陷
2、openEuler-20.03-LTS-SP3 Update 20231018发布情况及待修复缺陷
3、openEuler-22.03-LTS Update 20231018发布情况及待修复缺陷
4、openEuler-22.03-LTS-SP1 Update 20231018发布情况及待修复缺陷
5、openEuler-22.03-LTS-SP2 Update 20231018发布情况及待修复缺陷
6、openEuler 关键组件待修复CVE 清单
7、openEuler 社区指导文档及开放平台链接
本次update版本发布后,下一个版本里程碑点(预计在2023/10/27)提供 update_20231025 版本。
openEuler-20.03-LTS-SP1 Update 20231018
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP1修复版本已知问题11个,已知漏洞15个。目前版本分支剩余待修复缺陷10个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I88AEC?from=project-i…
CVE修复:
CVE
仓库
score
#I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV>
vim
8.2
#I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW>
vim
7.8
#I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM>
mariadb
7.5
#I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062>
samba
6.5
#I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU>
samba
6.5
#I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I>
libxml2
6.5
#I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR>
avahi
6.2
#I85CAQ:CVE-2023-39193<https://gitee.com/open_euler/dashboard?issue_id=I85CAQ>
kernel
6
#I86MTP:CVE-2023-39189<https://gitee.com/open_euler/dashboard?issue_id=I86MTP>
kernel
6
#I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W>
kernel
5.5
#I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B>
xerces-j2
5.3
#I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5>
zlib
1
#I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R>
curl
1
#I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X>
curl
1
#I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR>
ceph
1
Bugfix:
issue
仓库
#I50XDF:编译失败<https://gitee.com/open_euler/dashboard?issue_id=I50XDF>
libdb
#I6EACA:【22.03 SP1 update20230208】【arm/x86】newt编译失败<https://gitee.com/open_euler/dashboard?issue_id=I6EACA>
newt
#I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR>
libarchive
#I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser(a)HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH>
glib2
#I5UV2R: 回合上游社区补丁<https://gitee.com/open_euler/dashboard?issue_id=I5UV2R>
libsolv
#I7AW5E:logrotate配置prerotate执行失败时,已备份日志会被重命名<https://gitee.com/open_euler/dashboard?issue_id=I7AW5E>
logrotate
#I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错<https://gitee.com/open_euler/dashboard?issue_id=I7OXK8>
kernel
#I85XB3:[openEuler-1.0-LTS] 修复init_per_cpu()的空指针解引用<https://gitee.com/open_euler/dashboard?issue_id=I85XB3>
kernel
#I86GWG:针对某些盘NCQ场景通过D2H帧返回UNC场景优化<https://gitee.com/open_euler/dashboard?issue_id=I86GWG>
kernel
#I88UBD:【openEuler-1.0-LTS】The compilation fails due to the disabling of CONFIG_MICROCODE_AMD.<https://gitee.com/open_euler/dashboard?issue_id=I88UBD>
kernel
#I88WX3:syzkaller触发WARNING in armv8pmu_read_counter<https://gitee.com/open_euler/dashboard?issue_id=I88WX3>
kernel
openEuler-20.03-LTS-SP1版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1:Epol
openEuler-20.03-LTS-SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/EPOL/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/docker_img/update/
openEuler CVE 及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03LTS SP1 update2103
I3E5C1
【20.03-SP1】【arm/x86】服务启动失败
主要
regression-failed
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I3E5C1
openEuler 20.03LTS SP1 update210901
I48GIM
【20.03LTS SP1 update 210901】ovirt-cockpit-sso.service服务启动失败
主要
sig-oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I48GIM
openEuler 20.03-LTS-SP1
I4J0OY
【20.03 SP1】【arm/x86】安装好libdap后,getdap4命令的-i和-k参数使用异常
主要
sig/sig-recycle
src-openEuler/libdap
https://gitee.com/open_euler/dashboard?issue_id=I4J0OY
openEuler 20.03-LTS-SP1
I4JMG4
【20.03 SP1】【arm/x86】robotframework包的三个命令:libdoc、rebot、robot执行--help/-h/-?/--version,查看帮助信息和版本信息,返回值为251
主要
sig/sig-ROS
src-openEuler/python-robotframework
https://gitee.com/open_euler/dashboard?issue_id=I4JMG4
openEuler 20.03-LTS-SP1
I5DLX7
[20.03 22.03] 管理员指南操作文档mysql服务搭建指导文档有误
主要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I5DLX7
openEuler 20.03-LTS-SP1
I6VFAE
[20.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFAE
openEuler-20.03-LTS-SP1
I3QGU7
系统不支持GB18030
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I3QGU7
openEuler 20.03LTS SP1 update210926
I4CMSV
【20.03-LTS-SP1】【arm/x86】搭建Kubernetes 集群缺少包etcd
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I4CMSV
openEuler 20.03LTS SP1 update220111
I4QV6N
【openEuler-20.03-LTS-SP1】flink命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV6N
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-20.03-LTS-SP3 Update 20231018
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP3修复版本已知问11个,已知漏洞15个。目前版本分支剩余待修复缺陷 6个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP3 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I88AEE?from=project-i…
CVE修复:
CVE
仓库
score
#I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV>
vim
8.2
#I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW>
vim
7.8
#I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM>
mariadb
7.5
#I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062>
samba
6.5
#I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU>
samba
6.5
#I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I>
libxml2
6.5
#I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR>
avahi
6.2
#I85CAQ:CVE-2023-39193<https://gitee.com/open_euler/dashboard?issue_id=I85CAQ>
kernel
6
#I86MTP:CVE-2023-39189<https://gitee.com/open_euler/dashboard?issue_id=I86MTP>
kernel
6
#I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W>
kernel
5.5
#I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B>
xerces-j2
5.3
#I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R>
curl
1
#I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X>
curl
1
#I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR>
ceph
1
#I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5>
zlib
1
Bugfix:
issue
仓库
#I6EACA:【22.03 SP1 update20230208】【arm/x86】newt编译失败<https://gitee.com/open_euler/dashboard?issue_id=I6EACA>
newt
#I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR>
libarchive
#I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser(a)HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH>
glib2
#I5UV2R: 回合上游社区补丁<https://gitee.com/open_euler/dashboard?issue_id=I5UV2R>
libsolv
#I7AW5E:logrotate配置prerotate执行失败时,已备份日志会被重命名<https://gitee.com/open_euler/dashboard?issue_id=I7AW5E>
logrotate
#I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错<https://gitee.com/open_euler/dashboard?issue_id=I7OXK8>
kernel
#I85XB3:[openEuler-1.0-LTS] 修复init_per_cpu()的空指针解引用<https://gitee.com/open_euler/dashboard?issue_id=I85XB3>
kernel
#I86GWG:针对某些盘NCQ场景通过D2H帧返回UNC场景优化<https://gitee.com/open_euler/dashboard?issue_id=I86GWG>
kernel
#I88UBD:【openEuler-1.0-LTS】The compilation fails due to the disabling of CONFIG_MICROCODE_AMD.<https://gitee.com/open_euler/dashboard?issue_id=I88UBD>
kernel
#I88WX3:syzkaller触发WARNING in armv8pmu_read_counter<https://gitee.com/open_euler/dashboard?issue_id=I88WX3>
kernel
openEuler-20.03-LTS-SP3版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3:Epol
openEuler-20.03-LTS-SP3 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/EPOL/update/main/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/docker_img/update/
openEuler CVE及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP3 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03-LTS-SP3
I5KXUY
【20.03 LTS SP3 update 20220803】【arm/x86】ovirt-cockpit-sso.service服务启动失败
主要
sig/oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I5KXUY
openEuler-20.03-LTS-SP3
I5KY4S
【20.03 LTS SP3 update 20220803】【arm/x86】vdsmd.service服务启动失败,导致mom-vdsm.service服务无法启动成功
主要
sig/oVirt
src-openEuler/vdsm
https://gitee.com/open_euler/dashboard?issue_id=I5KY4S
openEuler-20.03-LTS-SP3
I6VFMI
[20.03 SP3] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFMI
openEuler-20.03-LTS-SP3
I72HWV
【20.03-lts-sp3】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72HWV
openEuler-20.03-LTS-SP3
I7QP67
[20.03-LTS-SP3]openssh自编译失败,提示缺少bc命令
次要
sig/Base-service
src-openEuler/openEuler-release
https://gitee.com/open_euler/dashboard?issue_id=I7QP67
openEuler 20.03LTS SP3 update220111
I4QV7S
【openEuler-20.03-LTS-SP3】flink run 命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV7S
openEuler-22.03-LTS Update 20231018
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS修复版本已知问题10个,已知漏洞15个。目前版本分支剩余待修复缺陷4个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I88AEF?from=project-i…
CVE修复:
CVE
仓库
score
#I86NLQ:CVE-2023-43641<https://gitee.com/open_euler/dashboard?issue_id=I86NLQ>
libcue
8.8
#I837XU:CVE-2023-4504<https://gitee.com/open_euler/dashboard?issue_id=I837XU>
cups
8.8
#I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV>
vim
8.2
#I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW>
vim
7.8
#I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM>
mariadb
7.5
#I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I>
libxml2
6.5
#I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062>
samba
6.5
#I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU>
samba
6.5
#I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR>
avahi
6.2
#I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W>
kernel
5.5
#I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B>
xerces-j2
5.3
#I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R>
curl
1
#I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X>
curl
1
#I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5>
zlib
1
#I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR>
ceph
1
Bugfix:
issue
仓库
#I7Y90Y:回合上游社区补丁,补丁数量:3<https://gitee.com/open_euler/dashboard?issue_id=I7Y90Y>
python3
#I7X6YS:openldap社区补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7X6YS>
openldap
#I7E9D3:libtirpc解耦无效依赖man-db<https://gitee.com/open_euler/dashboard?issue_id=I7E9D3>
libtirpc
#I6EACA:【22.03 SP1 update20230208】【arm/x86】newt编译失败<https://gitee.com/open_euler/dashboard?issue_id=I6EACA>
newt
#I5WJOD:fix URL<https://gitee.com/open_euler/dashboard?issue_id=I5WJOD>
libgpg-error
#I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR>
libarchive
#I5UOYG:secbinarycheck扫描安全配置结果,请分析备案<https://gitee.com/open_euler/dashboard?issue_id=I5UOYG>
libpng
#I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser(a)HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH>
glib2
#I7STNB:libsolv补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7STNB>
libsolv
#I82QPR:【OLK-5.10/openEuler-1.0-LTS】softlockup in rcu_momentary_dyntick_idle<https://gitee.com/open_euler/dashboard?issue_id=I82QPR>
kernel
openEuler-22.03-LTS版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:22.03:LTS
https://build.openeuler.org/project/show/openEuler:22.03:LTS:Epol
openEuler-22.03-LTS Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/ob…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS update20230726
I7ORCE
【22.03 LTS update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败; cephadm卸载有异常打印
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7ORCE
openEuler-22.03-LTS
I596H5
openEuler官网中安全加固指南模块—>加固指导—>系统服务—>ssh加固项说明:加固建议中多添加了@符号
次要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I596H5
openEuler-22.03-LTS
I6VFRX
[22.03-LTS][x86/arm]mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFRX
openEuler-22.03-LTS
I72N5G
【22.03-lts】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72N5G
openEuler-22.03-LTS-SP1 Update 20231018
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP1修复版本已知问题9个,已知漏洞16个。目前版本分支剩余待修复缺陷10个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I88AEA?from=project-i…
CVE修复:
CVE
仓库
score
#I86NLQ:CVE-2023-43641<https://gitee.com/open_euler/dashboard?issue_id=I86NLQ>
libcue
8.8
#I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV>
vim
8.2
#I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW>
vim
7.8
#I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM>
mariadb
7.5
#I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I>
libxml2
6.5
#I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062>
samba
6.5
#I8706V:CVE-2023-42670<https://gitee.com/open_euler/dashboard?issue_id=I8706V>
samba
6.5
#I87CXT:CVE-2023-3961<https://gitee.com/open_euler/dashboard?issue_id=I87CXT>
samba
6.5
#I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU>
samba
6.5
#I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR>
avahi
6.2
#I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W>
kernel
5.5
#I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B>
xerces-j2
5.3
#I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R>
curl
1
#I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X>
curl
1
#I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR>
ceph
1
#I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5>
zlib
1
Bugfix:
issue
仓库
#I7Y90Y:回合上游社区补丁,补丁数量:3<https://gitee.com/open_euler/dashboard?issue_id=I7Y90Y>
python3
#I7I4PR:空链接问题排查:openEuler-20.03-LTS、openEuler-20.03-LTS-SP1、openEuler-22.03-LTS升级后,查询环境,存在空连接。<https://gitee.com/open_euler/dashboard?issue_id=I7I4PR>
openldap
#I7E9D3:libtirpc解耦无效依赖man-db<https://gitee.com/open_euler/dashboard?issue_id=I7E9D3>
libtirpc
#I6J2KR:CVE-2CVE-2021-36976上游社区补丁更新<https://gitee.com/open_euler/dashboard?issue_id=I6J2KR>
libarchive
#I7NZX0: 例行分析libdnf补丁,需要回合补丁<https://gitee.com/open_euler/dashboard?issue_id=I7NZX0>
libdnf
#I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser(a)HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH>
glib2
#I7STNB:libsolv补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7STNB>
libsolv
#I7AZ85:使用LTS补丁替换自研修复方案cgroup: Do not corrupt task iteration when rebinding subsystem<https://gitee.com/open_euler/dashboard?issue_id=I7AZ85>
kernel
#I82QPR:【OLK-5.10/openEuler-1.0-LTS】softlockup in rcu_momentary_dyntick_idle<https://gitee.com/open_euler/dashboard?issue_id=I82QPR>
kernel
openEuler-22.03-LTS SP1版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1:Ep…
openEuler-22.03-LTS SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 22.03-SP1
I6B4V1
【22.03 SP1 update 20230118】【arm】libhdfs在arm架构降级失败,x86正常
主要
sig/bigdata
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I6B4V1
openEuler-22.03-LTS-SP1
I7LW30
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in wide_int_to_tree_1, at tree.c:1575)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LW30
openEuler-22.03-LTS-SP1
I7LWCW
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:internal compiler error: Segmentation fault
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWCW
openEuler-22.03-LTS-SP1
I7LWK7
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4394)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWK7
openEuler-22.03-LTS-SP1
I7LWO1
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during RTL pass: expand(in convert_move, at expr.c:219)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWO1
openEuler-22.03-LTS-SP1
I7LX07
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4379)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LX07
openEuler-22.03-LTS-SP1 update20230726
I7OR2I
【22.03 LTS SP1 update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7OR2I
openEuler-22.03-LTS-SP1
I6VFV6
[22.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFV6
openEuler-22.03-LTS-SP1
I73CKF
【22.03-lts-sp1】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I73CKF
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-22.03-LTS-SP2 Update 20231018
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP2修复版本已知问题5个,已知漏洞16个。目前版本分支剩余待修复缺陷2个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS-SP2 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I88AE9?from=project-i…
CVE修复:
CVE
仓库
score
#I86NLQ:CVE-2023-43641<https://gitee.com/open_euler/dashboard?issue_id=I86NLQ>
libcue
8.8
#I85JSV:CVE-2023-5441<https://gitee.com/open_euler/dashboard?issue_id=I85JSV>
vim
8.2
#I87OMW:CVE-2023-5535<https://gitee.com/open_euler/dashboard?issue_id=I87OMW>
vim
7.8
#I849BM:CVE-2023-5157<https://gitee.com/open_euler/dashboard?issue_id=I849BM>
mariadb
7.5
#I85U1I:CVE-2023-45322<https://gitee.com/open_euler/dashboard?issue_id=I85U1I>
libxml2
6.5
#I87062:CVE-2023-42669<https://gitee.com/open_euler/dashboard?issue_id=I87062>
samba
6.5
#I8706V:CVE-2023-42670<https://gitee.com/open_euler/dashboard?issue_id=I8706V>
samba
6.5
#I87CXT:CVE-2023-3961<https://gitee.com/open_euler/dashboard?issue_id=I87CXT>
samba
6.5
#I87CXU:CVE-2023-4091<https://gitee.com/open_euler/dashboard?issue_id=I87CXU>
samba
6.5
#I7M5BR:CVE-2023-38470<https://gitee.com/open_euler/dashboard?issue_id=I7M5BR>
avahi
6.2
#I84B2W:CVE-2023-42755<https://gitee.com/open_euler/dashboard?issue_id=I84B2W>
kernel
5.5
#I7K39B:CVE-2018-2799<https://gitee.com/open_euler/dashboard?issue_id=I7K39B>
xerces-j2
5.3
#I86P7R:CVE-2023-38545<https://gitee.com/open_euler/dashboard?issue_id=I86P7R>
curl
1
#I86P7X:CVE-2023-38546<https://gitee.com/open_euler/dashboard?issue_id=I86P7X>
curl
1
#I84TVR:CVE-2023-43040<https://gitee.com/open_euler/dashboard?issue_id=I84TVR>
ceph
1
#I885C5:CVE-2023-45853<https://gitee.com/open_euler/dashboard?issue_id=I885C5>
zlib
1
Bugfix:
issue
仓库
#I7E9D3:libtirpc解耦无效依赖man-db<https://gitee.com/open_euler/dashboard?issue_id=I7E9D3>
libtirpc
#I841PH:glib2存在死锁场景,可能导致 执行realm join --verbose HDOMAIN.LOCAL -U aduser(a)HDOMAIN.LOCAL --membership-software=samba 加入域 会偶现卡住的情况<https://gitee.com/open_euler/dashboard?issue_id=I841PH>
glib2
#I7STNB:libsolv补丁分析回合<https://gitee.com/open_euler/dashboard?issue_id=I7STNB>
libsolv
#I7D878:[OLK-5.10] ext4: delete redundant uptodate check for buffer<https://gitee.com/open_euler/dashboard?issue_id=I7D878>
kernel
#I82QPR:【OLK-5.10/openEuler-1.0-LTS】softlockup in rcu_momentary_dyntick_idle<https://gitee.com/open_euler/dashboard?issue_id=I82QPR>
kernel
openEuler-22.03-LTS SP2版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2:Ep…
openEuler-22.03-LTS SP2 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/hotpatch_update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
https://repo.openeuler.org/security/data/hotpatch_cvrf/
openEuler-22.03-LTS-SP2 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS-SP2-round-2
I795G3
【22.03-LTS-SP2 round2】本次转测源中出现多个版本的containers-common
主要
sig/sig-CloudNative
src-openEuler/skopeo
https://gitee.com/open_euler/dashboard?issue_id=I795G3
openEuler-22.03-LTS-SP2-SEC
I7AFIR
【22.03-LTS-SP2 round2】【x86/arm】libkae-1.2.10-6.oe2203sp2安全编译选项Rpath/Runpath不满足
主要
sig-AccLib
src-openEuler/libkae
https://gitee.com/open_euler/dashboard?issue_id=I7AFIR
社区待修复漏洞:
openEuler社区根据漏洞严重等级采取差异化的修复策略,请各个SIG 关注涉及CVE组件的修复情况。
严重等级(Severity Rating)
漏洞修复时长
致命(Critical)
7天
高(High)
14天
中(Medium)
30天
低(Low)
30天
可参考社区安全委员会漏洞:https://gitee.com/openeuler/security-committee/wikis/%E7%A4%BE…
近14天将超期CVE(10.21日数据):
漏洞编号
Issue ID
剩余天数
CVSS评分
软件包
责任SIG
CVE-2023-44981
I896D4
6.21
9.1
zookeeper
sig-bigdata
CVE-2023-40791
I88DAN
6.21
9.1
kernel
Kernel
CVE-2023-22102
I89F9G
13.21
8.3
mysql
Others
CVE-2023-45898
I88DBD
13.21
7.8
kernel
Kernel
CVE-2023-5557
I87QB3
13.21
7.7
tracker-miners
Base-service
CVE-2023-44487
I89672
12.2
7.5
nghttp2
Networking
CVE-2023-5632
I89456
12.2
7.5
mosquitto
Application
CVE-2023-45862
I885FJ
13.21
7.5
kernel
Kernel
CVE-2023-38545
I86P7R
13.78
7.5
curl
Networking
CVE-2023-4574
I7WZ14
9.2
6.5
firefox
Application
CVE-2023-4573
I7WZ06
9.2
6.5
firefox
Application
CVE-2023-3592
I7Z2PQ
13.2
5.8
mosquitto
Application
CVE-2023-43114
I829D9
2.2
5.5
qt
Runtime
CVE-2023-43898
I85EOY
13.29
5.5
stb
UKUI
CVE-2022-3466
I5VEVL
0.62
5.3
cri-o
sig-CloudNative
CVE-2023-0809
I856A0
13.2
5.3
mosquitto
Application
CVE-2023-1625
I6Q3J1
6.2
5.0
openstack-heat
sig-openstack
CVE-2023-4581
I7WYZD
9.2
4.3
firefox
Application
CVE-2023-40660
I84XBX
6.96
0.0
opensc
Base-service
CVE-2023-42118
I85795
9.1
0.0
exim
Application
CVE-2023-42117
I8579C
9.11
0.0
exim
Application
CVE-2023-42116
I8579B
9.11
0.0
exim
Application
CVE-2023-42115
I8579A
9.11
0.0
exim
Application
CVE-2023-42119
I85799
9.11
0.0
exim
Application
CVE-2023-42114
I85797
9.11
0.0
exim
Application
openEuler 社区指导文档及开放平台链接:
openEuler 版本分支维护规范:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E7%89%…
openEuler release-management 版本分支PR指导:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E5%BC%…
社区QA 版本测试提单规范
https://gitee.com/openeuler/QA/blob/master/%E7%A4%BE%E5%8C%BA%E7%89%88%E6%9…
社区QA 测试平台 radiates
https://radiatest.openeuler.org<https://radiatest.openeuler.org/>
1
0
BEGIN:VCALENDAR
PRODID:-//MDaemon Technologies Ltd//MDaemon 23.0.2
VERSION:2.0
METHOD:REQUEST
BEGIN:VTIMEZONE
TZID:China Standard Time
BEGIN:STANDARD
DTSTART:16010101T000000
TZOFFSETFROM:+0800
TZOFFSETTO:+0800
TZNAME:Standard Time
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
UID:WeLink962796783
SEQUENCE:0
DTSTAMP:20231017T032138Z
SUMMARY:QA 双周例会
ORGANIZER:MAILTO:carrie.cai@montage-tech.com
PRIORITY:5
ATTENDEE;CUTYPE=INDIVIDUAL;PARTSTAT=NEEDS-ACTION;ROLE=REQ-PARTICIPANT;
RSVP=TRUE:MAILTO:dev@openeuler.org,qa@openeuler.org
DTSTART;TZID=China Standard Time:20231018T141500
DTEND;TZID=China Standard Time:20231018T153000
TRANSP:OPAQUE
X-MICROSOFT-CDO-BUSYSTATUS:TENTATIVE
X-MICROSOFT-CDO-INTENDEDSTATUS:BUSY
X-MICROSOFT-DISALLOW-COUNTER:TRUE
BEGIN:VALARM
ACTION:DISPLAY
TRIGGER;VALUE=DURATION;RELATED=START:-PT15M
END:VALARM
END:VEVENT
END:VCALENDAR
1
0
BEGIN:VCALENDAR
PRODID:-//MDaemon Technologies Ltd//MDaemon 23.0.2
VERSION:2.0
METHOD:REQUEST
BEGIN:VTIMEZONE
TZID:Pacific Standard Time
BEGIN:STANDARD
DTSTART:16011101T020000
TZOFFSETFROM:-0700
TZOFFSETTO:-0800
RRULE:FREQ=YEARLY;BYDAY=1SU;BYMONTH=11
TZNAME:Standard Time
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:16010302T020000
TZOFFSETFROM:-0800
TZOFFSETTO:-0700
RRULE:FREQ=YEARLY;BYDAY=2SU;BYMONTH=3
TZNAME:Daylight Savings Time
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:WeLink962796783
SEQUENCE:0
DTSTAMP:20231017T032130Z
SUMMARY:QA 双周例会
ORGANIZER:MAILTO:carrie.cai@montage-tech.com
PRIORITY:5
ATTENDEE;CUTYPE=INDIVIDUAL;PARTSTAT=NEEDS-ACTION;ROLE=REQ-PARTICIPANT;
RSVP=TRUE:MAILTO:dev@openeuler.org,qa@openeuler.org
DTSTART;TZID=Pacific Standard Time:20231017T231500
DTEND;TZID=Pacific Standard Time:20231018T003000
TRANSP:OPAQUE
X-MICROSOFT-CDO-BUSYSTATUS:TENTATIVE
X-MICROSOFT-CDO-INTENDEDSTATUS:BUSY
X-MICROSOFT-DISALLOW-COUNTER:TRUE
BEGIN:VALARM
ACTION:DISPLAY
TRIGGER;VALUE=DURATION;RELATED=START:-PT15M
END:VALARM
END:VEVENT
END:VCALENDAR
1
0
您好!
sig-QA SIG 邀请您参加 2023-10-18 14:15 召开的WeLink会议(自动录制)
会议主题:QA 双周例会
会议链接:https://bmeeting.huaweicloud.com:36443/#/j/962796783
会议纪要:https://etherpad.openeuler.org/p/sig-QA-meetings
温馨提醒:建议接入会议后修改参会人的姓名,也可以使用您在gitee.com的ID
更多资讯尽在:https://openeuler.org/zh/
Hello!
openEuler sig-QA SIG invites you to attend the WeLink conference(auto recording) will be held at 2023-10-18 14:15,
The subject of the conference is QA 双周例会,
You can join the meeting at https://bmeeting.huaweicloud.com:36443/#/j/962796783.
Add topics at https://etherpad.openeuler.org/p/sig-QA-meetings.
Note: You are advised to change the participant name after joining the conference or use your ID at gitee.com.
More information: https://openeuler.org/en/
1
0
主题: openEuler update_20231011版本发布公告
Dear all,
经社区Release SIG、QA SIG及 CICD SIG 评估,openEuler-20.03-LTS-SP1、openEuler-20.03-LTS-SP3、openEuler-22.03-LTS、openEuler-22.03-LTS-SP1及openEuler-22.03-LTS-SP2 update版本满足版本出口质量,现进行发布公示。
本公示分为七部分:
1、openEuler-20.03-LTS-SP1 Update 20231011发布情况及待修复缺陷
2、openEuler-20.03-LTS-SP3 Update 20231011发布情况及待修复缺陷
3、openEuler-22.03-LTS Update 20231011发布情况及待修复缺陷
4、openEuler-22.03-LTS-SP1 Update 20231011发布情况及待修复缺陷
5、openEuler-22.03-LTS-SP2 Update 20231011发布情况及待修复缺陷
6、openEuler 关键组件待修复CVE 清单
7、openEuler 社区指导文档及开放平台链接
本次update版本发布后,下一个版本里程碑点(预计在2023/10/20)提供 update_20231018 版本。
openEuler-20.03-LTS-SP1 Update 20231011
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP1修复版本已知问题7个,已知漏洞43个。目前版本分支剩余待修复缺陷11个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I86CDI?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-25775
kernel
9.8
CVE-2023-5217
libvpx
8.8
CVE-2023-40474
gstreamer1-plugins-bad-free
8.8
CVE-2023-40475
gstreamer1-plugins-bad-free
8.8
CVE-2023-5217
libvpx
8.8
CVE-2023-4863
firefox
8.8
CVE-2023-40476
gstreamer1-plugins-bad-free
8.3
CVE-2023-4692
grub2
7.8
CVE-2023-4785
grpc
7.5
CVE-2023-44488
libvpx
7.5
CVE-2022-40433
openjdk-11
7.5
CVE-2023-5344
vim
7.5
CVE-2023-21930
openjdk-11
7.4
CVE-2023-5366
openvswitch
7.1
CVE-2023-42753
kernel
7
CVE-2023-5341
ImageMagick
6.2
CVE-2023-43788
libXpm
6.1
CVE-2023-21954
openjdk-11
5.9
CVE-2023-21967
openjdk-11
5.9
CVE-2023-43804
python-urllib3
5.9
CVE-2023-43789
libXpm
5.5
CVE-2023-43786
libX11
5.5
CVE-2023-4693
grub2
5.5
CVE-2023-43665
python-django
5.3
CVE-2023-21835
openjdk-11
5.3
CVE-2023-21939
openjdk-11
5.3
CVE-2023-5371
wireshark
5.3
CVE-2023-43787
libX11
5.3
CVE-2023-22041
openjdk-11
5.1
CVE-2023-4039
gcc
4.8
CVE-2023-43785
libX11
4.4
CVE-2023-21843
openjdk-11
3.7
CVE-2023-21968
openjdk-11
3.7
CVE-2023-21938
openjdk-11
3.7
CVE-2023-21937
openjdk-11
3.7
CVE-2023-22036
openjdk-11
3.7
CVE-2023-22045
openjdk-11
3.7
CVE-2023-22049
openjdk-11
3.7
CVE-2020-15103
freerdp
3.5
CVE-2020-36766
kernel
3.3
CVE-2023-22006
openjdk-11
3.1
CVE-2023-42754
kernel
0
CVE-2023-42755
kernel
0
Bugfix:
issue
仓库
#I869PY:【OLK510 & openEuler-1.0-LTS】 修复__inet_del_ifa()中一处memleak的问题
kernel
#I85XNK:[openEuler-1.0-LTS] linux-4.19.y inclusion(4.19.292..4.19.294)
kernel
#I7RPDX:Backport cgroup: fix missing cpus_read_{lock,unlock}() in cgroup_transfer_tasks()
kernel
#I85WL9:[openEuler-1.0-LTS] mm: memory-failure: use rcu lock instead of tasklist_lock when collect_procs()
kernel
#I84HSL: fib6_info_destroy_rcu中出现UAF问题
kernel
#I84IKB:【openEuler-1.0-LTS】4.19 LTS补丁回合:cifs: Release folio lock on fscache read hit
kernel
#I81G0T:cpuidle: Fix kobject memory leaks in error paths
kernel
openEuler-20.03-LTS-SP1版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1:Epol
openEuler-20.03-LTS-SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/EPOL/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/docker_img/update/
openEuler CVE 及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03LTS SP1 update2103
I3E5C1
【20.03-SP1】【arm/x86】服务启动失败
主要
regression-failed
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I3E5C1
openEuler 20.03LTS SP1 update210901
I48GIM
【20.03LTS SP1 update 210901】ovirt-cockpit-sso.service服务启动失败
主要
sig-oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I48GIM
openEuler 20.03-LTS-SP1
I4J0OY
【20.03 SP1】【arm/x86】安装好libdap后,getdap4命令的-i和-k参数使用异常
主要
sig/sig-recycle
src-openEuler/libdap
https://gitee.com/open_euler/dashboard?issue_id=I4J0OY
openEuler 20.03-LTS-SP1
I4JMG4
【20.03 SP1】【arm/x86】robotframework包的三个命令:libdoc、rebot、robot执行--help/-h/-?/--version,查看帮助信息和版本信息,返回值为251
主要
sig/sig-ROS
src-openEuler/python-robotframework
https://gitee.com/open_euler/dashboard?issue_id=I4JMG4
openEuler 20.03-LTS-SP1
I5DLX7
[20.03 22.03] 管理员指南操作文档mysql服务搭建指导文档有误
主要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I5DLX7
openEuler 20.03-LTS-SP1
I6VFAE
[20.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFAE
openEuler 20.03-LTS-SP1
I7ZOX9
【20.03 LTS SP1】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZOX9
openEuler-20.03-LTS-SP1
I3QGU7
系统不支持GB18030
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I3QGU7
openEuler 20.03LTS SP1 update210926
I4CMSV
【20.03-LTS-SP1】【arm/x86】搭建Kubernetes 集群缺少包etcd
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I4CMSV
openEuler 20.03LTS SP1 update220111
I4QV6N
【openEuler-20.03-LTS-SP1】flink命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV6N
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-20.03-LTS-SP3 Update 20231011
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP3修复版本已知问7个,已知漏洞42个。目前版本分支剩余待修复缺陷 7个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP3 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I86CDJ?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-25775
kernel
9.8
CVE-2023-5217
libvpx
8.8
CVE-2023-4504
cups
8.8
CVE-2023-40475
gstreamer1-plugins-bad-free
8.8
CVE-2023-4863
firefox
8.8
CVE-2023-40474
gstreamer1-plugins-bad-free
8.8
CVE-2023-40476
gstreamer1-plugins-bad-free
8.3
CVE-2023-4692
grub2
7.8
CVE-2023-44488
libvpx
7.5
CVE-2022-40433
openjdk-11
7.5
CVE-2023-5344
vim
7.5
CVE-2023-21930
openjdk-11
7.4
CVE-2023-5366
openvswitch
7.1
CVE-2023-42753
kernel
7
CVE-2023-5341
ImageMagick
6.2
CVE-2023-43788
libXpm
6.1
CVE-2023-43804
python-urllib3
5.9
CVE-2023-21954
openjdk-11
5.9
CVE-2023-21967
openjdk-11
5.9
CVE-2023-43789
libXpm
5.5
CVE-2023-43786
libX11
5.5
CVE-2023-4693
grub2
5.5
CVE-2023-43665
python-django
5.3
CVE-2023-21835
openjdk-11
5.3
CVE-2023-21939
openjdk-11
5.3
CVE-2023-43787
libX11
5.3
CVE-2023-5371
wireshark
5.3
CVE-2018-2799
xerces-j2
5.3
CVE-2023-22041
openjdk-11
5.1
CVE-2023-4039
gcc
4.8
CVE-2023-43785
libX11
4.4
CVE-2023-21843
openjdk-11
3.7
CVE-2023-21968
openjdk-11
3.7
CVE-2023-21938
openjdk-11
3.7
CVE-2023-21937
openjdk-11
3.7
CVE-2023-22036
openjdk-11
3.7
CVE-2023-22045
openjdk-11
3.7
CVE-2023-22049
openjdk-11
3.7
CVE-2020-36766
kernel
3.3
CVE-2023-22006
openjdk-11
3.1
CVE-2023-42754
kernel
0
CVE-2023-42755
kernel
0
Bugfix:
issue
仓库
#I7RPDX:Backport cgroup: fix missing cpus_read_{lock,unlock}() in cgroup_transfer_tasks()
kernel
#I81G0T:cpuidle: Fix kobject memory leaks in error paths
kernel
#I84HSL: fib6_info_destroy_rcu中出现UAF问题
kernel
#I84IKB:【openEuler-1.0-LTS】4.19 LTS补丁回合:cifs: Release folio lock on fscache read hit
kernel
#I85WL9:[openEuler-1.0-LTS] mm: memory-failure: use rcu lock instead of tasklist_lock when collect_procs()
kernel
#I85XNK:[openEuler-1.0-LTS] linux-4.19.y inclusion(4.19.292..4.19.294)
kernel
#I869PY:【OLK510 & openEuler-1.0-LTS】 修复__inet_del_ifa()中一处memleak的问题
kernel
openEuler-20.03-LTS-SP3版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3:Epol
openEuler-20.03-LTS-SP3 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/EPOL/update/main/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/docker_img/update/
openEuler CVE及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP3 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03-LTS-SP3
I5KXUY
【20.03 LTS SP3 update 20220803】【arm/x86】ovirt-cockpit-sso.service服务启动失败
主要
sig/oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I5KXUY
openEuler-20.03-LTS-SP3
I5KY4S
【20.03 LTS SP3 update 20220803】【arm/x86】vdsmd.service服务启动失败,导致mom-vdsm.service服务无法启动成功
主要
sig/oVirt
src-openEuler/vdsm
https://gitee.com/open_euler/dashboard?issue_id=I5KY4S
openEuler-20.03-LTS-SP3
I6VFMI
[20.03 SP3] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFMI
openEuler-20.03-LTS-SP3
I72HWV
【20.03-lts-sp3】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72HWV
openEuler-20.03-LTS-SP3
I7QP67
[20.03-LTS-SP3]openssh自编译失败,提示缺少bc命令
次要
sig/Base-service
src-openEuler/openEuler-release
https://gitee.com/open_euler/dashboard?issue_id=I7QP67
openEuler-20.03-LTS-SP3
I7ZOZZ
【20.03 LTS SP3】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZOZZ
openEuler 20.03LTS SP3 update220111
I4QV7S
【openEuler-20.03-LTS-SP3】flink run 命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV7S
openEuler-22.03-LTS Update 20231011
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS修复版本已知问题9个,已知漏洞46个。目前版本分支剩余待修复缺陷5个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I86CDK?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-5217
libvpx
8.8
CVE-2023-40474
gstreamer1-plugins-bad-free
8.8
CVE-2023-40475
gstreamer1-plugins-bad-free
8.8
CVE-2023-4584
firefox
8.8
CVE-2023-4863
firefox
8.8
CVE-2023-40476
gstreamer1-plugins-bad-free
8.3
CVE-2023-4911
glibc
7.8
CVE-2023-4692
grub2
7.8
CVE-2023-5197
kernel
7.8
CVE-2022-40433
openjdk-11
7.5
CVE-2023-44488
libvpx
7.5
CVE-2023-3354
qemu
7.5
CVE-2023-5344
vim
7.5
CVE-2023-21930
openjdk-11
7.4
CVE-2023-5366
openvswitch
7.1
CVE-2023-42753
kernel
7.0
CVE-2023-4575
firefox
6.5
CVE-2023-4573
firefox
6.5
CVE-2023-4574
firefox
6.5
CVE-2023-5341
ImageMagick
6.2
CVE-2023-43788
libXpm
6.1
CVE-2023-21954
openjdk-11
5.9
CVE-2023-21967
openjdk-11
5.9
CVE-2023-43804
python-urllib3
5.9
CVE-2023-43789
libXpm
5.5
CVE-2023-43786
libX11
5.5
CVE-2023-4693
grub2
5.5
CVE-2023-21835
openjdk-11
5.3
CVE-2023-21939
openjdk-11
5.3
CVE-2023-43665
python-django
5.3
CVE-2023-0809
mosquitto
5.3
CVE-2023-5371
wireshark
5.3
CVE-2023-43787
libX11
5.3
CVE-2018-2799
xerces-j2
5.3
CVE-2023-22041
openjdk-11
5.1
CVE-2023-4039
gcc
4.8
CVE-2023-43785
libX11
4.4
CVE-2023-4581
firefox
4.3
CVE-2023-21843
openjdk-11
3.7
CVE-2023-21968
openjdk-11
3.7
CVE-2023-21938
openjdk-11
3.7
CVE-2023-21937
openjdk-11
3.7
CVE-2023-22036
openjdk-11
3.7
CVE-2023-22045
openjdk-11
3.7
CVE-2023-22049
openjdk-11
3.7
CVE-2023-22006
openjdk-11
3.1
Bugfix:
issue
仓库
#I7SUDV:libbpf社区补丁分析回合
libbpf
#I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错
kernel
#I7PZZC:[OLK-5.10] NVMe bugfix补丁回合
kernel
#I7R4BC:[OLK-5.10] NVMe bugfix backport
kernel
#I7ZCDZ:[OLK-5.10] lpfc bugfix补丁回合
kernel
#I80YEI:LoongArch: binutils 2.41编译问题
kernel
#I80YFC:【OLK-5.10】添加浪潮BMC DRM驱动支持
kernel
#I839LV:【OLK-5.10】etmem修正打开idle_page、swap_page时模块引用计数正确问题
kernel
#I86JB6:nf_table LTS补丁整理回合
kernel
openEuler-22.03-LTS版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:22.03:LTS
https://build.openeuler.org/project/show/openEuler:22.03:LTS:Epol
openEuler-22.03-LTS Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/ob…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS update20230726
I7ORCE
【22.03 LTS update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败; cephadm卸载有异常打印
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7ORCE
openEuler-22.03-LTS
I596H5
openEuler官网中安全加固指南模块—>加固指导—>系统服务—>ssh加固项说明:加固建议中多添加了@符号
次要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I596H5
openEuler-22.03-LTS
I6VFRX
[22.03-LTS][x86/arm]mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFRX
openEuler-22.03-LTS
I72N5G
【22.03-lts】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72N5G
openEuler-22.03-LTS
I7ZP1J
【22.03 LTS】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP1J
openEuler-22.03-LTS-SP1 Update 20231011
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP1修复版本已知问题6个,已知漏洞29个。目前版本分支剩余待修复缺陷11个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I86CDH?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-5217
libvpx
8.8
CVE-2023-40475
gstreamer1-plugins-bad-free
8.8
CVE-2023-4584
firefox
8.8
CVE-2023-4863
firefox
8.8
CVE-2023-40474
gstreamer1-plugins-bad-free
8.8
CVE-2023-40476
gstreamer1-plugins-bad-free
8.3
CVE-2023-4911
glibc
7.8
CVE-2023-4692
grub2
7.8
CVE-2023-5197
kernel
7.8
CVE-2023-44488
libvpx
7.5
CVE-2023-5344
vim
7.5
CVE-2023-5366
openvswitch
7.1
CVE-2023-42753
kernel
7.0
CVE-2023-4575
firefox
6.5
CVE-2023-4573
firefox
6.5
CVE-2023-4574
firefox
6.5
CVE-2023-5341
ImageMagick
6.2
CVE-2023-43788
libXpm
6.1
CVE-2023-43804
python-urllib3
5.9
CVE-2023-4693
grub2
5.5
CVE-2023-43786
libX11
5.5
CVE-2023-43789
libXpm
5.5
CVE-2023-0809
mosquitto
5.3
CVE-2023-5371
wireshark
5.3
CVE-2023-43665
python-django
5.3
CVE-2023-43787
libX11
5.3
CVE-2023-4039
gcc
4.8
CVE-2023-43785
libX11
4.4
CVE-2023-4581
firefox
4.3
Bugfix:
issue
仓库
#I7SUDV:libbpf社区补丁分析回合
libbpf
#I82DMH:Add tinytoml rpm
tinytoml
#I7WSCH:format_ucs2()中有潜在的越界访问内存问题
efivar
#I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错
kernel
#I839LV:【OLK-5.10】etmem修正打开idle_page、swap_page时模块引用计数正确问题
kernel
#I86JB6:nf_table LTS补丁整理回合
kernel
openEuler-22.03-LTS SP1版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1:Ep…
openEuler-22.03-LTS SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 22.03-SP1
I6B4V1
【22.03 SP1 update 20230118】【arm】libhdfs在arm架构降级失败,x86正常
主要
sig/bigdata
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I6B4V1
openEuler-22.03-LTS-SP1
I7LW30
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in wide_int_to_tree_1, at tree.c:1575)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LW30
openEuler-22.03-LTS-SP1
I7LWCW
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:internal compiler error: Segmentation fault
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWCW
openEuler-22.03-LTS-SP1
I7LWK7
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4394)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWK7
openEuler-22.03-LTS-SP1
I7LWO1
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during RTL pass: expand(in convert_move, at expr.c:219)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWO1
openEuler-22.03-LTS-SP1
I7LX07
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4379)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LX07
openEuler-22.03-LTS-SP1 update20230726
I7OR2I
【22.03 LTS SP1 update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7OR2I
openEuler-22.03-LTS-SP1
I6VFV6
[22.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFV6
openEuler-22.03-LTS-SP1
I73CKF
【22.03-lts-sp1】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I73CKF
openEuler-22.03-LTS-SP1
I7ZP3M
【22.03 LTS SP1】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP3M
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-22.03-LTS-SP2 Update 20231011
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP2修复版本已知问题9个,已知漏洞29个。目前版本分支剩余待修复缺陷3个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS-SP2 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I86CDG?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-5217
libvpx
8.8
CVE-2023-40474
gstreamer1-plugins-bad-free
8.8
CVE-2023-40475
gstreamer1-plugins-bad-free
8.8
CVE-2023-4584
firefox
8.8
CVE-2023-4863
firefox
8.8
CVE-2023-40476
gstreamer1-plugins-bad-free
8.3
CVE-2023-4911
glibc
7.8
CVE-2023-4692
grub2
7.8
CVE-2023-5197
kernel
7.8
CVE-2023-5344
vim
7.5
CVE-2023-44488
libvpx
7.5
CVE-2023-5366
openvswitch
7.1
CVE-2023-42753
kernel
7.0
CVE-2023-4575
firefox
6.5
CVE-2023-4573
firefox
6.5
CVE-2023-4574
firefox
6.5
CVE-2023-5341
ImageMagick
6.2
CVE-2023-43788
libXpm
6.1
CVE-2023-43804
python-urllib3
5.9
CVE-2023-43786
libX11
5.5
CVE-2023-4693
grub2
5.5
CVE-2023-43789
libXpm
5.5
CVE-2023-43787
libX11
5.3
CVE-2023-0809
mosquitto
5.3
CVE-2023-43665
python-django
5.3
CVE-2023-5371
wireshark
5.3
CVE-2023-4039
gcc
4.8
CVE-2023-43785
libX11
4.4
CVE-2023-4581
firefox
4.3
Bugfix:
issue
仓库
#I7SUDV:libbpf社区补丁分析回合
libbpf
#I7WSCH:format_ucs2()中有潜在的越界访问内存问题
efivar
#I7OXK8: 【openEuler-1.0-LTS】TS200-2280K ,系统侧有inode的报错
kernel
#I7PZZC:[OLK-5.10] NVMe bugfix补丁回合
kernel
#I7R4BC:[OLK-5.10] NVMe bugfix backport
kernel
#I7T7G4:[OLK-5.10] 5.10.164 - 5.10.165 LTS补丁回合
kernel
#I7ZCDZ:[OLK-5.10] lpfc bugfix补丁回合
kernel
#I839LV:【OLK-5.10】etmem修正打开idle_page、swap_page时模块引用计数正确问题
kernel
#I86JB6:nf_table LTS补丁整理回合
kernel
openEuler-22.03-LTS SP2版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2:Ep…
openEuler-22.03-LTS SP2 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/hotpatch_update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
https://repo.openeuler.org/security/data/hotpatch_cvrf/
openEuler-22.03-LTS-SP2 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS-SP2-round-2
I795G3
【22.03-LTS-SP2 round2】本次转测源中出现多个版本的containers-common
主要
sig/sig-CloudNative
src-openEuler/skopeo
https://gitee.com/open_euler/dashboard?issue_id=I795G3
openEuler-22.03-LTS-SP2-SEC
I7AFIR
【22.03-LTS-SP2 round2】【x86/arm】libkae-1.2.10-6.oe2203sp2安全编译选项Rpath/Runpath不满足
主要
sig-AccLib
src-openEuler/libkae
https://gitee.com/open_euler/dashboard?issue_id=I7AFIR
openEuler-22.03-LTS-SP2
I7ZP4V
【22.03 LTS SP2】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP4V
社区待修复漏洞:
openEuler社区根据漏洞严重等级采取差异化的修复策略,请各个SIG 关注涉及CVE组件的修复情况。
严重等级(Severity Rating)
漏洞修复时长
致命(Critical)
7天
高(High)
14天
中(Medium)
30天
低(Low)
30天
可参考社区安全委员会漏洞:https://gitee.com/openeuler/security-committee/wikis/%E7%A4%BE…
近14天将超期CVE(10.14日数据):
漏洞编号
Issue ID
剩余天数
CVSS评分
软件包
责任SIG
CVE-2019-3885
I8575Q
0.2
7.5
pacemaker
sig-Ha
CVE-2023-4584
I7WZ0C
0.2
8.8
firefox
Application
CVE-2023-4575
I7WYY3
0.2
6.5
firefox
Application
CVE-2023-34414
I7BFX6
0.7
3.1
firefox
Application
CVE-2023-32212
I71RAD
0.7
4.3
firefox
Application
CVE-2023-32206
I71R4I
0.7
6.5
firefox
Application
CVE-2023-32205
I71R4D
0.7
4.3
firefox
Application
CVE-2023-32211
I71R41
0.7
6.5
firefox
Application
CVE-2023-29533
I6UVER
0.7
4.3
firefox
Application
CVE-2023-29545
I6UVEO
0.7
6.5
firefox
Application
CVE-2023-29535
I6UVDZ
0.7
6.5
firefox
Application
CVE-2023-29548
I6UVDO
0.7
6.5
firefox
Application
CVE-2023-32007
I6ZW0C
1.2
8.8
spark
sig-bigdata
CVE-2023-43091
I81S93
1.84
0.0
gnome-maps
GNOME
CVE-2023-4154
I87063
11.2
7.5
samba
Networking
CVE-2023-4586
I8701L
11.2
7.4
netty
sig-Java
CVE-2023-36478
I870FQ
12.2
7.5
jetty
sig-Java
CVE-2023-1625
I6Q3J1
13.2
5.0
openstack-heat
sig-openstack
CVE-2023-43040
I84TVR
13.73
0.0
ceph
sig-ceph
CVE-2023-39323
I85M9R
13.79
7.4
golang
sig-golang
CVE-2023-40660
I84XBX
13.96
0.0
opensc
Base-service
openEuler 社区指导文档及开放平台链接:
openEuler 版本分支维护规范:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E7%89%…
openEuler release-management 版本分支PR指导:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E5%BC%…
社区QA 版本测试提单规范
https://gitee.com/openeuler/QA/blob/master/%E7%A4%BE%E5%8C%BA%E7%89%88%E6%9…
社区QA 测试平台 radiates
https://radiatest.openeuler.org<https://radiatest.openeuler.org/>
1
0
主题: openEuler update_20230927版本发布公告
Dear all,
经社区Release SIG、QA SIG及 CICD SIG 评估,openEuler-20.03-LTS-SP1、openEuler-20.03-LTS-SP3、openEuler-22.03-LTS、openEuler-22.03-LTS-SP1及openEuler-22.03-LTS-SP2 update版本满足版本出口质量,现进行发布公示。
本公示分为七部分:
1、openEuler-20.03-LTS-SP1 Update 20230927发布情况及待修复缺陷
2、openEuler-20.03-LTS-SP3 Update 20230927发布情况及待修复缺陷
3、openEuler-22.03-LTS Update 20230927发布情况及待修复缺陷
4、openEuler-22.03-LTS-SP1 Update 20230927发布情况及待修复缺陷
5、openEuler-22.03-LTS-SP2 Update 20230927发布情况及待修复缺陷
6、openEuler 关键组件待修复CVE 清单
7、openEuler 社区指导文档及开放平台链接
本次update版本发布后,下一个版本里程碑点(预计在2023/10/13)提供 update_20231011 版本。
openEuler-20.03-LTS-SP1 Update 20230927
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP1修复版本已知问题1个,已知漏洞12个。目前版本分支剩余待修复缺陷21个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I84061?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2021-33635
iSulad
9.8
CVE-2021-33636
iSulad
9.8
CVE-2021-33637
iSulad
9.8
CVE-2021-33638
iSulad
9.8
CVE-2023-4504
cups
8.8
CVE-2023-4806
glibc
7.5
CVE-2023-3341
bind
7.5
CVE-2023-43642
snappy-java
7.5
CVE-2021-33634
lcr
6.3
CVE-2023-4813
glibc
5.9
CVE-2023-5156
glibc
3.7
CVE-2023-4641
shadow
3.3
Bugfix:
issue
仓库
#I830AI:【openEuler-1.0-LTS】加速器设备初始化之前需要进行一次复位操作
kernel
openEuler-20.03-LTS-SP1版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1:Epol
openEuler-20.03-LTS-SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/EPOL/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/docker_img/update/
openEuler CVE 及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03LTS SP1 update2103
I3E5C1
【20.03-SP1】【arm/x86】服务启动失败
主要
regression-failed
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I3E5C1
openEuler 20.03LTS SP1 update210901
I48GIM
【20.03LTS SP1 update 210901】ovirt-cockpit-sso.service服务启动失败
主要
sig-oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I48GIM
openEuler 20.03-LTS-SP1
I4J0OY
【20.03 SP1】【arm/x86】安装好libdap后,getdap4命令的-i和-k参数使用异常
主要
sig/sig-recycle
src-openEuler/libdap
https://gitee.com/open_euler/dashboard?issue_id=I4J0OY
openEuler 20.03-LTS-SP1
I4JMG4
【20.03 SP1】【arm/x86】robotframework包的三个命令:libdoc、rebot、robot执行--help/-h/-?/--version,查看帮助信息和版本信息,返回值为251
主要
sig/sig-ROS
src-openEuler/python-robotframework
https://gitee.com/open_euler/dashboard?issue_id=I4JMG4
openEuler 20.03-LTS-SP1
I5DLX7
[20.03 22.03] 管理员指南操作文档mysql服务搭建指导文档有误
主要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I5DLX7
openEuler 20.03-LTS-SP1
I6VFAE
[20.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFAE
openEuler 20.03-LTS-SP1
I7ZOX9
【20.03 LTS SP1】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZOX9
openEuler-20.03-LTS-SP1
I3QGU7
系统不支持GB18030
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I3QGU7
openEuler 20.03LTS SP1 update210926
I4CMSV
【20.03-LTS-SP1】【arm/x86】搭建Kubernetes 集群缺少包etcd
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I4CMSV
openEuler 20.03-LTS-SP1
I4G4A5
Undefine-shift in _bfd_safe_read_leb128
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4A5
openEuler 20.03-LTS-SP1
I4G4B1
Integer overflow in print_vms_time
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4B1
openEuler 20.03-LTS-SP1
I4G4VY
memleak in parse_gnu_debugaltlink
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4VY
openEuler 20.03-LTS-SP1
I4G4WF
Heap-buffer-overflow in slurp_hppa_unwind_table
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4WF
openEuler 20.03-LTS-SP1
I4G4WW
Use-after-free in make_qualified_name
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4WW
openEuler 20.03-LTS-SP1
I4G4X6
memleak in byte_get_little_endian
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4X6
openEuler 20.03-LTS-SP1
I4G4XF
memleak in process_mips_specific
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4XF
openEuler 20.03-LTS-SP1
I4G4Y0
out-of-memory in vms_lib_read_index
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4Y0
openEuler 20.03-LTS-SP1
I4G4YJ
Heap-buffer-overflow in bfd_getl16
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4YJ
openEuler 20.03-LTS-SP1
I4G4YV
Floating point exception in _bfd_vms_slurp_etir
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4YV
openEuler 20.03LTS SP1 update220111
I4QV6N
【openEuler-20.03-LTS-SP1】flink命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV6N
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-20.03-LTS-SP3 Update 20230927
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP3修复版本已知问2个,已知漏洞17个。目前版本分支剩余待修复缺陷 7个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP3 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I84063?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2021-33635
iSulad
9.8
CVE-2021-33636
iSulad
9.8
CVE-2021-33637
iSulad
9.8
CVE-2021-33638
iSulad
9.8
CVE-2023-43115
ghostscript
9.8
CVE-2022-4515
ctags
7.8
CVE-2022-40023
python-mako
7.5
CVE-2023-3341
bind
7.5
CVE-2023-4806
glibc
7.5
CVE-2023-43642
snappy-java
7.5
CVE-2020-18651
exempi
6.5
CVE-2020-18652
exempi
6.5
CVE-2021-33634
lcr
6.3
CVE-2021-40732
exempi
6.1
CVE-2023-4813
glibc
5.9
CVE-2023-5156
glibc
3.7
CVE-2023-4641
shadow
3.3
Bugfix:
issue
仓库
#I830AI:【openEuler-1.0-LTS】加速器设备初始化之前需要进行一次复位操作
kernel
#I7PH6J:补丁回合
A-Tune-Collector
openEuler-20.03-LTS-SP3版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3:Epol
openEuler-20.03-LTS-SP3 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/EPOL/update/main/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/docker_img/update/
openEuler CVE及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP3 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03-LTS-SP3
I5KXUY
【20.03 LTS SP3 update 20220803】【arm/x86】ovirt-cockpit-sso.service服务启动失败
主要
sig/oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I5KXUY
openEuler-20.03-LTS-SP3
I5KY4S
【20.03 LTS SP3 update 20220803】【arm/x86】vdsmd.service服务启动失败,导致mom-vdsm.service服务无法启动成功
主要
sig/oVirt
src-openEuler/vdsm
https://gitee.com/open_euler/dashboard?issue_id=I5KY4S
openEuler-20.03-LTS-SP3
I6VFMI
[20.03 SP3] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFMI
openEuler-20.03-LTS-SP3
I72HWV
【20.03-lts-sp3】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72HWV
openEuler-20.03-LTS-SP3
I7QP67
[20.03-LTS-SP3]openssh自编译失败,提示缺少bc命令
次要
sig/Base-service
src-openEuler/openEuler-release
https://gitee.com/open_euler/dashboard?issue_id=I7QP67
openEuler-20.03-LTS-SP3
I7ZOZZ
【20.03 LTS SP3】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZOZZ
openEuler 20.03LTS SP3 update220111
I4QV7S
【openEuler-20.03-LTS-SP3】flink run 命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV7S
openEuler-22.03-LTS Update 20230927
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS修复版本已知问题1个,已知漏洞14个。目前版本分支剩余待修复缺陷5个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I84064?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-41419
python-gevent
9.8
CVE-2021-33635
iSulad
9.8
CVE-2021-33636
iSulad
9.8
CVE-2021-33637
iSulad
9.8
CVE-2021-33638
iSulad
9.8
CVE-2023-4504
cups
8.8
CVE-2023-4806
glibc
7.5
CVE-2023-43642
snappy-java
7.5
CVE-2023-3341
bind
7.5
CVE-2021-33634
lcr
6.3
CVE-2023-4813
glibc
5.9
CVE-2018-2799
xerces-j2
5.3
CVE-2023-5156
glibc
3.7
CVE-2023-4641
shadow
3.3
Bugfix:
issue
仓库
#I82IXJ:22.03SP1版本网口绑定team的负载模式(loadbalance)后,单核CPU占用100%
libteam
openEuler-22.03-LTS版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:22.03:LTS
https://build.openeuler.org/project/show/openEuler:22.03:LTS:Epol
openEuler-22.03-LTS Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/ob…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS update20230726
I7ORCE
【22.03 LTS update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败; cephadm卸载有异常打印
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7ORCE
openEuler-22.03-LTS
I596H5
openEuler官网中安全加固指南模块—>加固指导—>系统服务—>ssh加固项说明:加固建议中多添加了@符号
次要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I596H5
openEuler-22.03-LTS
I6VFRX
[22.03-LTS][x86/arm]mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFRX
openEuler-22.03-LTS
I72N5G
【22.03-lts】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72N5G
openEuler-22.03-LTS
I7ZP1J
【22.03 LTS】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP1J
openEuler-22.03-LTS-SP1 Update 20230927
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP1修复版本已知问题1个,已知漏洞15个。目前版本分支剩余待修复缺陷11个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I84060?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-41419
python-gevent
9.8
CVE-2021-33635
iSulad
9.8
CVE-2021-33636
iSulad
9.8
CVE-2021-33637
iSulad
9.8
CVE-2021-33638
iSulad
9.8
CVE-2023-4504
cups
8.8
CVE-2023-30362
dsoftbus
7.5
CVE-2023-43642
snappy-java
7.5
CVE-2023-4806
glibc
7.5
CVE-2023-3341
bind
7.5
CVE-2023-1999
firefox
7.5
CVE-2021-33634
lcr
6.3
CVE-2023-4813
glibc
5.9
CVE-2023-5156
glibc
3.7
CVE-2023-4641
shadow
3.3
Bugfix:
issue
仓库
#I82IXJ:22.03SP1版本网口绑定team的负载模式(loadbalance)后,单核CPU占用100%
libteam
openEuler-22.03-LTS SP1版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1:Ep…
openEuler-22.03-LTS SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 22.03-SP1
I6B4V1
【22.03 SP1 update 20230118】【arm】libhdfs在arm架构降级失败,x86正常
主要
sig/bigdata
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I6B4V1
openEuler-22.03-LTS-SP1
I7LW30
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in wide_int_to_tree_1, at tree.c:1575)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LW30
openEuler-22.03-LTS-SP1
I7LWCW
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:internal compiler error: Segmentation fault
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWCW
openEuler-22.03-LTS-SP1
I7LWK7
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4394)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWK7
openEuler-22.03-LTS-SP1
I7LWO1
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during RTL pass: expand(in convert_move, at expr.c:219)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWO1
openEuler-22.03-LTS-SP1
I7LX07
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4379)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LX07
openEuler-22.03-LTS-SP1 update20230726
I7OR2I
【22.03 LTS SP1 update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7OR2I
openEuler-22.03-LTS-SP1
I6VFV6
[22.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFV6
openEuler-22.03-LTS-SP1
I73CKF
【22.03-lts-sp1】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I73CKF
openEuler-22.03-LTS-SP1
I7ZP3M
【22.03 LTS SP1】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP3M
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-22.03-LTS-SP2 Update 20230927
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP2修复版本已知问题1个,已知漏洞17个。目前版本分支剩余待修复缺陷3个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS-SP2 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I8405Y?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2021-33635
iSulad
9.8
CVE-2021-33636
iSulad
9.8
CVE-2021-33637
iSulad
9.8
CVE-2021-33638
iSulad
9.8
CVE-2023-41419
python-gevent
9.8
CVE-2023-43115<https://gitee.com/open_euler/dashboard?issue_id=I82DIG>
ghostscript
9.8
CVE-2023-4504
cups
8.8
CVE-2022-4515
ctags
7.8
CVE-2023-30362
dsoftbus
7.5
CVE-2023-43642
snappy-java
7.5
CVE-2023-4806
glibc
7.5
CVE-2023-3341
bind
7.5
CVE-2021-33634<https://gitee.com/open_euler/dashboard?issue_id=I842X9>
lcr
6.3
CVE-2021-40732
exempi
6.1
CVE-2023-4813
glibc
5.9
CVE-2023-5156
glibc
3.7
CVE-2023-4641<https://gitee.com/open_euler/dashboard?issue_id=I7XB8F>
shadow
3.3
Bugfix:
issue
仓库
#I82IXJ:22.03SP1版本网口绑定team的负载模式(loadbalance)后,单核CPU占用100%
libteam
openEuler-22.03-LTS SP2版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2:Ep…
openEuler-22.03-LTS SP2 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/hotpatch_update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
https://repo.openeuler.org/security/data/hotpatch_cvrf/
openEuler-22.03-LTS-SP2 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS-SP2-round-2
I795G3
【22.03-LTS-SP2 round2】本次转测源中出现多个版本的containers-common
主要
sig/sig-CloudNative
src-openEuler/skopeo
https://gitee.com/open_euler/dashboard?issue_id=I795G3
openEuler-22.03-LTS-SP2-SEC
I7AFIR
【22.03-LTS-SP2 round2】【x86/arm】libkae-1.2.10-6.oe2203sp2安全编译选项Rpath/Runpath不满足
主要
sig-AccLib
src-openEuler/libkae
https://gitee.com/open_euler/dashboard?issue_id=I7AFIR
openEuler-22.03-LTS-SP2
I7ZP4V
【22.03 LTS SP2】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP4V
社区待修复漏洞:
openEuler社区根据漏洞严重等级采取差异化的修复策略,请各个SIG 关注涉及CVE组件的修复情况。
严重等级(Severity Rating)
漏洞修复时长
致命(Critical)
7天
高(High)
14天
中(Medium)
30天
低(Low)
30天
可参考社区安全委员会漏洞:https://gitee.com/openeuler/security-committee/wikis/%E7%A4%BE…
近14天将超期CVE(9.28日数据):
漏洞编号
Issue ID
剩余天数
CVSS评分
软件包
责任SIG
CVE-2023-4574
I7WZ14
0.01
0.0
firefox
Application
CVE-2023-4584
I7WZ0C
0.01
0.0
firefox
Application
CVE-2023-4573
I7WZ06
0.01
0.0
firefox
Application
CVE-2023-4581
I7WYZD
0.01
0.0
firefox
Application
CVE-2023-4576
I7WYZB
0.01
0.0
firefox
Application
CVE-2023-41419
I84A04
4.65
9.8
python-gevent
Programming-language
CVE-2023-4863
I82PC7
5.23
8.8
firefox
Application
CVE-2023-3592
I7Z2PQ
7.76
0.0
mosquitto
Application
CVE-2023-41053
I7Z7QU
8.65
3.3
redis6
sig-bigdata
CVE-2023-41053
I7Z7QT
8.65
3.3
redis5
sig-bigdata
CVE-2023-5197
I84NFY
13.23
7.8
kernel
Kernel
CVE-2023-42753
I83QCZ
13.23
7.8
kernel
Kernel
CVE-2022-4318
I675RA
13.23
7.8
fence-agents
sig-Ha
CVE-2023-37154
I813NN
14.81
0.0
nagios-plugins
Networking
openEuler 社区指导文档及开放平台链接:
openEuler 版本分支维护规范:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E7%89%…
openEuler release-management 版本分支PR指导:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E5%BC%…
社区QA 版本测试提单规范
https://gitee.com/openeuler/QA/blob/master/%E7%A4%BE%E5%8C%BA%E7%89%88%E6%9…
社区QA 测试平台 radiates
https://radiatest.openeuler.org<https://radiatest.openeuler.org/>
1
0
发件人: Wangwei (Bessel) <bessel.wang(a)huawei.com<mailto:bessel.wang@huawei.com>>
发送时间: 2023年9月27日 13:07
收件人: Hufeng (Solar, Euler) <solar.hu(a)huawei.com<mailto:solar.hu@huawei.com>>; Huangchengpiao <huangchengpiao(a)huawei.com<mailto:huangchengpiao@huawei.com>>; chenyaqiang <chenyaqiang(a)huawei.com<mailto:chenyaqiang@huawei.com>>; Chemingdao(openEuler) <chemingdao(a)huawei.com<mailto:chemingdao@huawei.com>>; Mingpei <mingpei(a)huawei.com<mailto:mingpei@huawei.com>>; Fanjiachen(Jiachen,openEuler) <fanjiachen3(a)huawei.com<mailto:fanjiachen3@huawei.com>>; Zengweifeng (Weifeng Zeng) <zwfeng(a)huawei.com<mailto:zwfeng@huawei.com>>; shidongdong (E) <shidongdong5(a)huawei.com<mailto:shidongdong5@huawei.com>>; Sujinling <sujinling(a)huawei.com<mailto:sujinling@huawei.com>>
抄送: Wangbo(Ryan,Kunpeng Computing) <ryan.wangbo(a)huawei.com<mailto:ryan.wangbo@huawei.com>>
主题: openEuler 23.09创新版本申请发布
openEuler TC委员,您好
openEuler 23.09创新版本选取对应时间上游社区最新内核6.4,为下一跳LTS版本逐步完成内核、软件包升级选型,并为提供开发者技术创新平台,作为LTS版本技术特性的孵化器
由社区1000+开发者经过3个多月的努力,已完成版本交付并于9月26日通过openEuler sig-release-management评审同意发布,预计9月28日在社区正式发布
现向TC委员申请版本发布,如您有意见可随时反馈给sig-release-management或者sig-QA
Release notes:
https://gitee.com/openeuler/docs/tree/stable2-23.09/docs/zh/docs/Releasenot…
软件包选型:
https://gitee.com/openeuler/release-management/blob/master/openEuler-23.09/…
版本feature:
https://gitee.com/openeuler/release-management/blob/master/openEuler-23.09/…
sig-release-management评审结论:
https://etherpad.openeuler.org/p/sig-release-management-meetings
版本测试报告:
https://gitee.com/openeuler/QA/tree/master/Test_Result/openEuler_23.09
发布件链接(发布件目录):
https://www.openeuler.org/zh/download/(待发布)
版本归档链接(构建产物目录):
http://121.36.84.172/dailybuild/EBS-openEuler-23.09/openeuler-2023-09-26-14…
1
0
Dear all,
openEuler 23.09 RC5版本已顺利构建并通过AT测试,openEuler 23.09创新版本继续基于EulerMaker统一编译构建,同时继续保留OBS构建系统及对应的构建工程,社区开发者可继续按需使用。
l openEuler 23.09 RC5版本下载地址:http://121.36.84.172/dailybuild/EBS-openEuler-23.09/rc5_openeuler-2023-09-22-17-56-11/
l 基于6.4 kernel发布,面向openEuler 24.03 LTS提前进行技术探索
l openEuler 23.09基础软件包升级完成,软件包公示地址:https://gitee.com/openeuler/release-management/blob/…
l openEuler 23.09 feature list:https://gitee.com/openeuler/release-management/blob/master/openEuler-2…
各个SIG组可基于该版本开展组件自验证及试用,社区一起协作支撑openEuler 23.09版本issue发现和定位修复,您发现和定位修复每一个issue不仅可以解决您使用openEuler版本的问题点,更可以帮助社区一起持续优化用户的体验!
l openEuler 版本缺陷管理规范链接:https://gitee.com/openeuler/QA/blob/master/%E7%A4%BE%E5%8C%BA%E7…
l 社区QA 测试平台 radiates: https://radiatest.openeuler.org
openEuler 23.09创新版本待办issue,请责任sig尽快组织闭环
里程碑
任务标题
任务负责人
标签
任务路径
仓库路径
openEuler-23.09-round-2
dnf check检查出kde-filesystem被舍弃问题未解决
sig/System-tool
https://gitee.com/open_euler/dashboard?issue_id=I6IRIH
https://gitee.com/open_euler/dashboard/projects/src-openeuler/kde-filesystem
openEuler-23.09-dailybuild
[EulerMaker&OBS] gtk-doc build problem in openEuler:23.09
dwl301
sig/GNOME,block
https://gitee.com/open_euler/dashboard?issue_id=I7S7OA
https://gitee.com/open_euler/dashboard/projects/src-openeuler/gtk-doc
openEuler-23.09-round-1
【openEuler-23.09 rc1 】【arm/x86 】powertop.service服务启动报:modprobe cpufreq_stats failed
陈棋德
sig/Base-service
https://gitee.com/open_euler/dashboard?issue_id=I7W5HD
https://gitee.com/open_euler/dashboard/projects/src-openeuler/powertop
openEuler-23.09-round-1
【openEuler-23.09 rc1 】【arm/x86 】strongswan.service、strongswan-starter.service启动之后,日志中有异常信息
OpenHosec
sig/sig-security-fac
https://gitee.com/open_euler/dashboard?issue_id=I7WDVS
https://gitee.com/open_euler/dashboard/projects/src-openeuler/strongswan
openEuler-23.09-round-1
【23.09 round1】【arm/x86】mandoc安装过程中有failed
杨昭
sig/sig-epol,block
https://gitee.com/open_euler/dashboard?issue_id=I7WE9H
https://gitee.com/open_euler/dashboard/projects/src-openeuler/mandoc
openEuler-23.09-round-1
【23.09 round1】【arm/x86】 a2x -f xhtml --xsl-file=common/xsl/test.xsl -D ./tmp/ common/test.adoc
陈棋德
sig/Base-service
https://gitee.com/open_euler/dashboard?issue_id=I7WG04
https://gitee.com/open_euler/dashboard/projects/src-openeuler/asciidoc
openEuler-23.09-round-1
【openEuler-23.09-RC1】【arm/x86】ltp执行用例cgroup报错
卢佳琳
sig/Kernel
https://gitee.com/open_euler/dashboard?issue_id=I7WHJL
https://gitee.com/open_euler/dashboard/projects/openeuler/kernel
openEuler-23.09-round-1
无法识别的命令"-fstack-clash-protection-O2"
sig/Base-service
https://gitee.com/open_euler/dashboard?issue_id=I7WIK9
https://gitee.com/open_euler/dashboard/projects/src-openeuler/openEuler-rpm…
openEuler-23.09-round-2
限制negative dentry数量的功能丢失
李炜
sig/Kernel
https://gitee.com/open_euler/dashboard?issue_id=I7Y986
https://gitee.com/open_euler/dashboard/projects/src-openeuler/kernel
openEuler-23.09-round-2
【openEuler 23.09 rc2】arm架构centos7.4-cui无法正常迁移到openEuler
sig/sig-Migration
https://gitee.com/open_euler/dashboard?issue_id=I7Z3K0
https://gitee.com/open_euler/dashboard/projects/src-openeuler/migration-too…
openEuler-23.09-round-3
【23.09 RC3】使用rpmbuild 方式编译完成后,进入opengauss-server源码目录下make check报错
sig/DB
https://gitee.com/open_euler/dashboard?issue_id=I7ZY6R
https://gitee.com/open_euler/dashboard/projects/src-openeuler/opengauss-ser…
openEuler-23.09-round-3
ipv6 DNAT组网不通
sig/Networking
https://gitee.com/open_euler/dashboard?issue_id=I80GMD
https://gitee.com/open_euler/dashboard/projects/src-openeuler/iputils
openEuler-23.09-round-3
python执行正则表达式的时候,由于匹配范围较大,导致占用内存超10M
sig/Base-service
https://gitee.com/open_euler/dashboard?issue_id=I80GO2
https://gitee.com/open_euler/dashboard/projects/src-openeuler/python3
1
0
主题: openEuler update_20230920版本发布公告
Dear all,
经社区Release SIG、QA SIG及 CICD SIG 评估,openEuler-20.03-LTS-SP1、openEuler-20.03-LTS-SP3、openEuler-22.03-LTS、openEuler-22.03-LTS-SP1及openEuler-22.03-LTS-SP2 update版本满足版本出口质量,现进行发布公示。
本公示分为七部分:
1、openEuler-20.03-LTS-SP1 Update 20230920发布情况及待修复缺陷
2、openEuler-20.03-LTS-SP3 Update 20230920发布情况及待修复缺陷
3、openEuler-22.03-LTS Update 20230920发布情况及待修复缺陷
4、openEuler-22.03-LTS-SP1 Update 20230920发布情况及待修复缺陷
5、openEuler-22.03-LTS-SP2 Update 20230920发布情况及待修复缺陷
6、openEuler 关键组件待修复CVE 清单
7、openEuler 社区指导文档及开放平台链接
本次update版本发布后,下一个版本里程碑点(预计在2023/09/28)提供 update_20230926 版本。
openEuler-20.03-LTS-SP1 Update 20230920
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP1修复版本已知问题3个,已知漏洞13个。目前版本分支剩余待修复缺陷21个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I8234T?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-4863
libwebp
9.6
CVE-2023-41915
pmix
8.1
CVE-2023-4921
kernel
7.8
CVE-2023-24537
skopeo
7.5
CVE-2023-4881
kernel
7.1
CVE-2023-21400
kernel
6.7
CVE-2023-4874
mutt
6.5
CVE-2023-41164
python-django
6.5
CVE-2023-4875
mutt
5.7
CVE-2023-20588
kernel
5.5
CVE-2023-39742
giflib
5.5
CVE-2023-40217
python3
5.3
CVE-2022-45887
kernel
4.7
Bugfix:
issue
仓库
#I82QEQ:在链接 glibc库场景下,当nsswitch工具动态加载一个包含容器内容的chroot库时,代码注入可能会发生。
iSulad
#I7XIHZ:安装libvirt*,ping操作提示“sendmsg: Operation not permitted”
ebtables
#I4YKIJ:【openEuler-1.0-LTS】加速器VF执行业务后或者当前正在执行业务,对PF进行FLR,均有可能触发QM的总线异常,需要驱动在复位之前停流踢cache
kernel
openEuler-20.03-LTS-SP1版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP1:Epol
openEuler-20.03-LTS-SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/EPOL/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP1/docker_img/update/
openEuler CVE 及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03LTS SP1 update2103
I3E5C1
【20.03-SP1】【arm/x86】服务启动失败
主要
regression-failed
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I3E5C1
openEuler 20.03LTS SP1 update210901
I48GIM
【20.03LTS SP1 update 210901】ovirt-cockpit-sso.service服务启动失败
主要
sig-oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I48GIM
openEuler 20.03-LTS-SP1
I4J0OY
【20.03 SP1】【arm/x86】安装好libdap后,getdap4命令的-i和-k参数使用异常
主要
sig/sig-recycle
src-openEuler/libdap
https://gitee.com/open_euler/dashboard?issue_id=I4J0OY
openEuler 20.03-LTS-SP1
I4JMG4
【20.03 SP1】【arm/x86】robotframework包的三个命令:libdoc、rebot、robot执行--help/-h/-?/--version,查看帮助信息和版本信息,返回值为251
主要
sig/sig-ROS
src-openEuler/python-robotframework
https://gitee.com/open_euler/dashboard?issue_id=I4JMG4
openEuler 20.03-LTS-SP1
I5DLX7
[20.03 22.03] 管理员指南操作文档mysql服务搭建指导文档有误
主要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I5DLX7
openEuler 20.03-LTS-SP1
I6VFAE
[20.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFAE
openEuler 20.03-LTS-SP1
I7ZOX9
【20.03 LTS SP1】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZOX9
openEuler-20.03-LTS-SP1
I3QGU7
系统不支持GB18030
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I3QGU7
openEuler 20.03LTS SP1 update210926
I4CMSV
【20.03-LTS-SP1】【arm/x86】搭建Kubernetes 集群缺少包etcd
无优先级
sig/TC
openEuler/community
https://gitee.com/open_euler/dashboard?issue_id=I4CMSV
openEuler 20.03-LTS-SP1
I4G4A5
Undefine-shift in _bfd_safe_read_leb128
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4A5
openEuler 20.03-LTS-SP1
I4G4B1
Integer overflow in print_vms_time
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4B1
openEuler 20.03-LTS-SP1
I4G4VY
memleak in parse_gnu_debugaltlink
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4VY
openEuler 20.03-LTS-SP1
I4G4WF
Heap-buffer-overflow in slurp_hppa_unwind_table
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4WF
openEuler 20.03-LTS-SP1
I4G4WW
Use-after-free in make_qualified_name
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4WW
openEuler 20.03-LTS-SP1
I4G4X6
memleak in byte_get_little_endian
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4X6
openEuler 20.03-LTS-SP1
I4G4XF
memleak in process_mips_specific
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4XF
openEuler 20.03-LTS-SP1
I4G4Y0
out-of-memory in vms_lib_read_index
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4Y0
openEuler 20.03-LTS-SP1
I4G4YJ
Heap-buffer-overflow in bfd_getl16
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4YJ
openEuler 20.03-LTS-SP1
I4G4YV
Floating point exception in _bfd_vms_slurp_etir
无优先级
sig/Base-service
src-openEuler/binutils
https://gitee.com/open_euler/dashboard?issue_id=I4G4YV
openEuler 20.03LTS SP1 update220111
I4QV6N
【openEuler-20.03-LTS-SP1】flink命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV6N
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-20.03-LTS-SP3 Update 20230920
经各SIG及社区开发者贡献,本周openEuler-20.03-LTS-SP3修复版本已知问7个,已知漏洞15个。目前版本分支剩余待修复缺陷 7个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-20.03-LTS-SP3 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I8234X?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-4863
libwebp
9.6
CVE-2023-41915
pmix
8.1
CVE-2023-4921
kernel
7.8
CVE-2023-24537
skopeo
7.5
CVE-2023-4785
grpc
7.5
CVE-2023-2977
opensc
7.1
CVE-2023-4881
kernel
7.1
CVE-2023-21400
kernel
6.7
CVE-2023-41164
python-django
6.5
CVE-2023-4874
mutt
6.5
CVE-2023-4875
mutt
5.7
CVE-2023-39742
giflib
5.5
CVE-2023-20588
kernel
5.5
CVE-2023-40217
python3
5.3
CVE-2022-45887
kernel
4.7
Bugfix:
issue
仓库
#I828IW:【openEuler-20.03-LTS-SP3】【arm/x86 】units_cur部分参数执行报错
units
#I82QJV:【20.03-lts-sp3_update 2023/09/19 release】update version to 2.0.18-13
iSulad
#I82AZ2:调用lxc二进制前为打开LXC_MEMFD_REXEC属性,存在安全风险
lcr
#I82QG4:clibcni中存在strerror函数调用,日志输出可能存在错误风险
clibcni
#I82QT2:设备mount地址错误
lxc
#I7XIHZ:安装libvirt*,ping操作提示“sendmsg: Operation not permitted”
ebtables
#I82LC6:【openEuler-1.0-LTS】关内核抢占场景,qm收包可能出现问题
kernel
openEuler-20.03-LTS-SP3版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3
https://build.openeuler.org/project/show/openEuler:20.03:LTS:SP3:Epol
openEuler-20.03-LTS-SP3 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/update/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/EPOL/update/main/
https://repo.openeuler.org/openEuler-20.03-LTS-SP3/docker_img/update/
openEuler CVE及安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-20.03-LTS-SP3 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 20.03-LTS-SP3
I5KXUY
【20.03 LTS SP3 update 20220803】【arm/x86】ovirt-cockpit-sso.service服务启动失败
主要
sig/oVirt
src-openEuler/ovirt-cockpit-sso
https://gitee.com/open_euler/dashboard?issue_id=I5KXUY
openEuler-20.03-LTS-SP3
I5KY4S
【20.03 LTS SP3 update 20220803】【arm/x86】vdsmd.service服务启动失败,导致mom-vdsm.service服务无法启动成功
主要
sig/oVirt
src-openEuler/vdsm
https://gitee.com/open_euler/dashboard?issue_id=I5KY4S
openEuler-20.03-LTS-SP3
I6VFMI
[20.03 SP3] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFMI
openEuler-20.03-LTS-SP3
I72HWV
【20.03-lts-sp3】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72HWV
openEuler-20.03-LTS-SP3
I7QP67
[20.03-LTS-SP3]openssh自编译失败,提示缺少bc命令
次要
sig/Base-service
src-openEuler/openEuler-release
https://gitee.com/open_euler/dashboard?issue_id=I7QP67
openEuler-20.03-LTS-SP3
I7ZOZZ
【20.03 LTS SP3】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZOZZ
openEuler 20.03LTS SP3 update220111
I4QV7S
【openEuler-20.03-LTS-SP3】flink run 命令执行失败
无优先级
sig/sig-ai-bigdata
src-openEuler/flink
https://gitee.com/open_euler/dashboard?issue_id=I4QV7S
openEuler-22.03-LTS Update 20230920
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS修复版本已知问题7个,已知漏洞17个。目前版本分支剩余待修复缺陷5个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I82351?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-4863
libwebp
9.6
CVE-2023-41915
pmix
8.1
CVE-2023-32253
kernel
8.1
CVE-2023-32249
kernel
8.1
CVE-2023-4921
kernel
7.8
CVE-2023-28366
mosquitto
7.5
CVE-2023-4785
grpc
7.5
CVE-2023-4881
kernel
7.1
CVE-2023-21400
kernel
6.7
CVE-2023-41164
python-django
6.5
CVE-2023-4874
mutt
6.5
CVE-2023-4875
mutt
5.7
CVE-2023-39742
giflib
5.5
CVE-2023-20588
kernel
5.5
CVE-2023-40217
python3
5.3
CVE-2022-45887
kernel
4.7
CVE-2023-32251
kernel
0.0
Bugfix:
issue
仓库
#I82AZ2:调用lxc二进制前为打开LXC_MEMFD_REXEC属性,存在安全风险
lcr
#I82QGO:【22.03-lts_update 2023/09/19 release】update version to 2.0.18-13
iSulad
#I82QG4:clibcni中存在strerror函数调用,日志输出可能存在错误风险
clibcni
#I82QT2:设备mount地址错误
lxc
#I7XIHZ:安装libvirt*,ping操作提示“sendmsg: Operation not permitted”
ebtables
#I80Y3R: grub2社区补丁回合 & SBAT元数据修正
grub2
#I828EV:日志重演EIO并发sync block_dev,数据丢失挂载仍然成功导致文件系统损坏
kernel
openEuler-22.03-LTS版本编译构建信息查询链接:
https://build.openeuler.org/project/show/openEuler:22.03:LTS
https://build.openeuler.org/project/show/openEuler:22.03:LTS:Epol
openEuler-22.03-LTS Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/Op…
https://repo.openeuler.org/openEuler-22.03-LTS/EPOL/update/multi_version/ob…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS update20230726
I7ORCE
【22.03 LTS update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败; cephadm卸载有异常打印
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7ORCE
openEuler-22.03-LTS
I596H5
openEuler官网中安全加固指南模块—>加固指导—>系统服务—>ssh加固项说明:加固建议中多添加了@符号
次要
sig/doc
openEuler/docs
https://gitee.com/open_euler/dashboard?issue_id=I596H5
openEuler-22.03-LTS
I6VFRX
[22.03-LTS][x86/arm]mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFRX
openEuler-22.03-LTS
I72N5G
【22.03-lts】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I72N5G
openEuler-22.03-LTS
I7ZP1J
【22.03 LTS】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP1J
openEuler-22.03-LTS-SP1 Update 20230920
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP1修复版本已知问题10个,已知漏洞17个。目前版本分支剩余待修复缺陷11个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS SP1 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I8234M?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-4863
libwebp
9.6
CVE-2023-41915
pmix
8.1
CVE-2023-32253
kernel
8.1
CVE-2023-32249
kernel
8.1
CVE-2023-4921
kernel
7.8
CVE-2023-4785
grpc
7.5
CVE-2023-24537
skopeo
7.5
CVE-2023-4881
kernel
7.1
CVE-2023-21400
kernel
6.7
CVE-2023-4874
mutt
6.5
CVE-2023-41164
python-django
6.5
CVE-2023-4875
mutt
5.7
CVE-2023-39742
giflib
5.5
CVE-2023-20588
kernel
5.5
CVE-2023-40217
python3
5.3
CVE-2022-45887
kernel
4.7
CVE-2023-32251
kernel
0.0
Bugfix:
issue
仓库
#I817RT:spec文件不完善,无法从rpm解压出源码
yaffs2
#I80WE9:BOLT优化Ceph报错
llvm-bolt
#I82DMH:Add tinytoml rpm
tinytoml
#I82QK2:【22.03-lts-sp1_update 2023/09/19 release】update version to 2.0.18-13
iSulad
#I82AZ2:调用lxc二进制前为打开LXC_MEMFD_REXEC属性,存在安全风险
lcr
#I82QMR:freezing状态的容器也应该设置为unfreeze
lxc
#I82QG4:clibcni中存在strerror函数调用,日志输出可能存在错误风险
clibcni
#I7XIHZ:安装libvirt*,ping操作提示“sendmsg: Operation not permitted”
ebtables
#I80Y3R: grub2社区补丁回合 & SBAT元数据修正
grub2
#I828EV:日志重演EIO并发sync block_dev,数据丢失挂载仍然成功导致文件系统损坏
kernel
openEuler-22.03-LTS SP1版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP1:Ep…
openEuler-22.03-LTS SP1 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP1/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
openEuler-22.03-LTS-SP1 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler 22.03-SP1
I6B4V1
【22.03 SP1 update 20230118】【arm】libhdfs在arm架构降级失败,x86正常
主要
sig/bigdata
src-openEuler/hadoop
https://gitee.com/open_euler/dashboard?issue_id=I6B4V1
openEuler-22.03-LTS-SP1
I7LW30
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in wide_int_to_tree_1, at tree.c:1575)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LW30
openEuler-22.03-LTS-SP1
I7LWCW
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:internal compiler error: Segmentation fault
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWCW
openEuler-22.03-LTS-SP1
I7LWK7
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4394)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWK7
openEuler-22.03-LTS-SP1
I7LWO1
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during RTL pass: expand(in convert_move, at expr.c:219)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LWO1
openEuler-22.03-LTS-SP1
I7LX07
【arm】-O3 -flto-partition=one -fipa-struct-reorg -fwhole-program编译ICE:during IPA pass: struct_reorg(in get_type_field, at ipa-struct-reorg/ipa-struct-reorg.c:4379)
主要
sig/Compiler
openEuler/gcc
https://gitee.com/open_euler/dashboard?issue_id=I7LX07
openEuler-22.03-LTS-SP1 update20230726
I7OR2I
【22.03 LTS SP1 update20230726】【arm\x86】selinux-policy-base的版本不符合ceph子包的安装条件,ceph子包安装失败
主要
sig/sig-SDS
src-openEuler/ceph
https://gitee.com/open_euler/dashboard?issue_id=I7OR2I
openEuler-22.03-LTS-SP1
I6VFV6
[22.03 SP1] [x86/arm] mariadb授权给远程用户,远程连接服务失败
次要
sig/DB
src-openEuler/mariadb
https://gitee.com/open_euler/dashboard?issue_id=I6VFV6
openEuler-22.03-LTS-SP1
I73CKF
【22.03-lts-sp1】x86环境上同时安装php-fpm软件包和php-opcache软件包后会导致php-fpm.service服务启动失败
次要
sig/Base-service
src-openEuler/php
https://gitee.com/open_euler/dashboard?issue_id=I73CKF
openEuler-22.03-LTS-SP1
I7ZP3M
【22.03 LTS SP1】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP3M
openEuler-20.03-LTS-SP1-dailybuild
I5Y99T
mate-desktop install problem in openEuler:20:03:LTS:SP1
无优先级
sig/sig-mate-desktop
src-openEuler/mate-desktop
https://gitee.com/open_euler/dashboard?issue_id=I5Y99T
openEuler-22.03-LTS-SP2 Update 20230920
经各SIG及社区开发者贡献,本周openEuler-22.03-LTS-SP2修复版本已知问题6个,已知漏洞32个。目前版本分支剩余待修复缺陷3个,缺陷/漏洞统计详见清单,缺陷/漏洞问题详见各软件包源码仓库
openEuler-22.03-LTS-SP2 Update版本CVE修复 及Bugfix list公示链接:
https://gitee.com/openeuler/release-management/issues/I8234M?from=project-i…
CVE修复:
CVE
仓库
score
CVE-2023-4056
firefox
9.8
CVE-2023-4863
libwebp
9.6
CVE-2023-37201
firefox
8.8
CVE-2023-37202
firefox
8.8
CVE-2023-37211
firefox
8.8
CVE-2023-4047
firefox
8.8
CVE-2023-41915
pmix
8.1
CVE-2023-32253
kernel
8.1
CVE-2023-32249
kernel
8.1
CVE-2023-37208
firefox
7.8
CVE-2023-4921
kernel
7.8
CVE-2023-24537
skopeo
7.5
CVE-2023-4785
grpc
7.5
CVE-2023-4050
firefox
7.5
CVE-2023-4055
firefox
7.5
CVE-2023-4048
firefox
7.5
CVE-2023-2977
opensc
7.1
CVE-2023-4881
kernel
7.1
CVE-2023-21400
kernel
6.7
CVE-2023-4874
mutt
6.5
CVE-2023-41164
python-django
6.5
CVE-2023-37207
firefox
6.5
CVE-2023-4049
firefox
5.9
CVE-2023-4875
mutt
5.7
CVE-2023-39742
giflib
5.5
CVE-2023-4054
firefox
5.5
CVE-2023-20588
kernel
5.5
CVE-2023-40217
python3
5.3
CVE-2023-4045
firefox
5.3
CVE-2023-4046
firefox
5.3
CVE-2022-45887
kernel
4.7
CVE-2023-32251
kernel
0.0
Bugfix:
issue
仓库
#I7WHE3:修复组bond后,删除bond异常错误
kernel
#I82QKA:【22.03-lts-sp2_update 2023/09/19 release】update version to 2.1.3-6
iSulad
#I82AZ2:调用lxc二进制前为打开LXC_MEMFD_REXEC属性,存在安全风险
lcr
#I82QMR:freezing状态的容器也应该设置为unfreeze
lxc
#I80Y3R: grub2社区补丁回合 & SBAT元数据修正
grub2
#I828EV:日志重演EIO并发sync block_dev,数据丢失挂载仍然成功导致文件系统损坏
kernel
openEuler-22.03-LTS SP2版本编译构建信息查询链接:
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2
https://build.openeuler.openatom.cn/project/show/openEuler:22.03:LTS:SP2:Ep…
openEuler-22.03-LTS SP2 Update版本 发布源链接:
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/main/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/hotpatch_update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/docker_img/update/
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
https://repo.openeuler.org/openEuler-22.03-LTS-SP2/EPOL/update/multi_versio…
openEuler CVE 及 安全公告公示链接:
https://www.openeuler.org/zh/security/cve/
https://www.openeuler.org/zh/security/safety-bulletin/
https://repo.openeuler.org/security/data/cvrf/
https://repo.openeuler.org/security/data/hotpatch_cvrf/
openEuler-22.03-LTS-SP2 Update版本待修复问题清单公示(任务ID标注红色的问题单优先级高):
里程碑
任务ID
任务标题
优先级
sig组
关联仓库
任务路径
openEuler-22.03-LTS-SP2-round-2
I795G3
【22.03-LTS-SP2 round2】本次转测源中出现多个版本的containers-common
主要
sig/sig-CloudNative
src-openEuler/skopeo
https://gitee.com/open_euler/dashboard?issue_id=I795G3
openEuler-22.03-LTS-SP2-SEC
I7AFIR
【22.03-LTS-SP2 round2】【x86/arm】libkae-1.2.10-6.oe2203sp2安全编译选项Rpath/Runpath不满足
主要
sig-AccLib
src-openEuler/libkae
https://gitee.com/open_euler/dashboard?issue_id=I7AFIR
openEuler-22.03-LTS-SP2
I7ZP4V
【22.03 LTS SP2】【arm/x86】 qdbuscpp2xml-qt5的help信息名称不一致
次要
sig/Programming-lang
src-openEuler/qt5-qtbase
https://gitee.com/open_euler/dashboard?issue_id=I7ZP4V
社区待修复漏洞:
openEuler社区根据漏洞严重等级采取差异化的修复策略,请各个SIG 关注涉及CVE组件的修复情况。
严重等级(Severity Rating)
漏洞修复时长
致命(Critical)
7天
高(High)
14天
中(Medium)
30天
低(Low)
30天
可参考社区安全委员会漏洞:https://gitee.com/openeuler/security-committee/wikis/%E7%A4%BE…
近14天将超期CVE(9.22日数据):
漏洞编号
Issue ID
剩余天数
CVSS评分
软件包
责任SIG
CVE-2023-43115
I82DIG
6.87
9.8
ghostscript
Base-service
CVE-2023-32215
I71R4G
5.79
8.8
firefox
Application
CVE-2023-32213
I71R3Y
5.79
8.8
firefox
Application
CVE-2023-32207
I71R3W
5.79
8.8
firefox
Application
CVE-2023-29536
I6UVEI
5.79
8.8
firefox
Application
CVE-2023-29541
I6UVDN
5.79
8.8
firefox
Application
CVE-2023-29539
I6UVDJ
5.79
8.8
firefox
Application
CVE-2023-29550
I6UVCU
5.79
8.8
firefox
Application
CVE-2023-4863
I82PC7
11.29
8.8
firefox
Application
CVE-2023-4504
I837XU
13.87
8.8
cups
Desktop
CVE-2023-30362
I81897
5.57
7.5
dsoftbus
distributed-middleware
CVE-2023-32214
I71R4A
5.79
7.5
firefox
Application
CVE-2023-1999
I6VVSM
5.79
7.5
firefox
Application
CVE-2023-4813
I80UPG
10.29
7.5
glibc
Computing
CVE-2023-3341
I832LT
12.29
7.5
bind
Networking
CVE-2023-4314
I80IPE
11.29
7.2
which
Base-service
CVE-2022-22753
I5TUFV
5.7
7.1
firefox
Application
CVE-2023-39615
I7XAOY
8.72
6.5
libxml2
Base-service
CVE-2023-32206
I71R4I
21.79
6.5
firefox
Application
CVE-2023-32211
I71R41
21.79
6.5
firefox
Application
CVE-2023-29545
I6UVEO
21.79
6.5
firefox
Application
CVE-2023-29535
I6UVDZ
21.79
6.5
firefox
Application
CVE-2023-29548
I6UVDO
21.79
6.5
firefox
Application
CVE-2023-4611
I7WZK1
9.7
6.3
kernel
Kernel
CVE-2020-18770
I7V70M
4.51
5.5
zziplib
Base-service
CVE-2020-18781
I7V6ZA
4.51
5.5
audiofile
Base-service
CVE-2023-4569
I7WN6T
9.29
5.5
kernel
Kernel
CVE-2023-42467
I809YE
21.29
5.5
qemu
Virt
CVE-2023-40612
I7VHLO
0.98
5.3
openstack-horizon
sig-openstack
CVE-2023-37453
I819LJ
21.61
4.6
kernel
Kernel
CVE-2023-32212
I71RAD
21.79
4.3
firefox
Application
CVE-2023-32205
I71R4D
21.79
4.3
firefox
Application
CVE-2023-29533
I6UVER
21.79
4.3
firefox
Application
CVE-2023-41053
I7Z7QU
14.7
3.3
redis6
sig-bigdata
CVE-2023-41053
I7Z7QT
14.7
3.3
redis5
sig-bigdata
CVE-2023-34414
I7BFX6
21.79
3.1
firefox
Application
CVE-2023-4732
I7Y1UL
10.17
0.0
kernel
Kernel
CVE-2023-3995
I7YIXN
12.19
0.0
kernel
Kernel
CVE-2023-3592
I7Z2PQ
13.82
0.0
mosquitto
Application
CVE-2023-4806
I80UPC
20.18
0.0
glibc
Computing
CVE-2023-37154
I813NN
20.86
0.0
nagios-plugins
Networking
CVE-2023-4421
I8155B
20.92
0.0
nss
sig-security-facility
CVE-2005-3660
I818Y1
21.59
0.0
kernel
Kernel
openEuler 社区指导文档及开放平台链接:
openEuler 版本分支维护规范:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E7%89%…
openEuler release-management 版本分支PR指导:
https://gitee.com/openeuler/release-management/blob/master/openEuler%E5%BC%…
社区QA 版本测试提单规范
https://gitee.com/openeuler/QA/blob/master/%E7%A4%BE%E5%8C%BA%E7%89%88%E6%9…
社区QA 测试平台 radiates
https://radiatest.openeuler.org<https://radiatest.openeuler.org/>
1
0
您好!
sig-QA SIG 邀请您参加 2023-09-22 16:30 召开的WeLink会议(自动录制)
会议主题:QA版本评审补充会议
会议链接:https://bmeeting.huaweicloud.com:36443/#/j/980042564
会议纪要:https://etherpad.openeuler.org/p/sig-QA-meetings
温馨提醒:建议接入会议后修改参会人的姓名,也可以使用您在gitee.com的ID
更多资讯尽在:https://openeuler.org/zh/
Hello!
openEuler sig-QA SIG invites you to attend the WeLink conference(auto recording) will be held at 2023-09-22 16:30,
The subject of the conference is QA版本评审补充会议,
You can join the meeting at https://bmeeting.huaweicloud.com:36443/#/j/980042564.
Add topics at https://etherpad.openeuler.org/p/sig-QA-meetings.
Note: You are advised to change the participant name after joining the conference or use your ID at gitee.com.
More information: https://openeuler.org/en/
1
0