{"affected":[{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"ardana-ansible","purl":"pkg:rpm/suse/ardana-ansible&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"8.0+git.1660773729.3789a6d-3.85.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"ardana-cobbler","purl":"pkg:rpm/suse/ardana-cobbler&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"8.0+git.1660773402.d845a45-3.47.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"grafana","purl":"pkg:rpm/suse/grafana&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"6.7.4-4.23.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"openstack-heat-templates","purl":"pkg:rpm/suse/openstack-heat-templates&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.0.0+git.1654529662.75fa04a-3.27.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"openstack-murano","purl":"pkg:rpm/suse/openstack-murano&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-3.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"openstack-murano-doc","purl":"pkg:rpm/suse/openstack-murano-doc&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-3.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"python-Django","purl":"pkg:rpm/suse/python-Django&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.11.29-3.42.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"rabbitmq-server","purl":"pkg:rpm/suse/rabbitmq-server&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"3.6.16-3.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"venv-openstack-heat","purl":"pkg:rpm/suse/venv-openstack-heat&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"9.0.8~dev22-12.45.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"venv-openstack-horizon-hpe","purl":"pkg:rpm/suse/venv-openstack-horizon-hpe&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"12.0.5~dev6-14.48.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-hpe-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:HPE Helion OpenStack 8","name":"venv-openstack-murano","purl":"pkg:rpm/suse/venv-openstack-murano&distro=HPE%20Helion%20OpenStack%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-12.38.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"ardana-ansible","purl":"pkg:rpm/suse/ardana-ansible&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"8.0+git.1660773729.3789a6d-3.85.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"ardana-cobbler","purl":"pkg:rpm/suse/ardana-cobbler&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"8.0+git.1660773402.d845a45-3.47.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"grafana","purl":"pkg:rpm/suse/grafana&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"6.7.4-4.23.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"openstack-heat-templates","purl":"pkg:rpm/suse/openstack-heat-templates&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.0.0+git.1654529662.75fa04a-3.27.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"openstack-murano","purl":"pkg:rpm/suse/openstack-murano&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-3.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"openstack-murano-doc","purl":"pkg:rpm/suse/openstack-murano-doc&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-3.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"python-Django","purl":"pkg:rpm/suse/python-Django&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.11.29-3.42.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"rabbitmq-server","purl":"pkg:rpm/suse/rabbitmq-server&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"3.6.16-3.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"venv-openstack-heat","purl":"pkg:rpm/suse/venv-openstack-heat&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"9.0.8~dev22-12.45.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"venv-openstack-horizon","purl":"pkg:rpm/suse/venv-openstack-horizon&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"12.0.5~dev6-14.48.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ardana-ansible":"8.0+git.1660773729.3789a6d-3.85.1","ardana-cobbler":"8.0+git.1660773402.d845a45-3.47.1","grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","venv-openstack-heat-x86_64":"9.0.8~dev22-12.45.1","venv-openstack-horizon-x86_64":"12.0.5~dev6-14.48.1","venv-openstack-murano-x86_64":"4.0.2~dev3-12.38.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud 8","name":"venv-openstack-murano","purl":"pkg:rpm/suse/venv-openstack-murano&distro=SUSE%20OpenStack%20Cloud%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-12.38.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"grafana","purl":"pkg:rpm/suse/grafana&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"6.7.4-4.23.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"openstack-heat-templates","purl":"pkg:rpm/suse/openstack-heat-templates&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.0.0+git.1654529662.75fa04a-3.27.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"openstack-murano","purl":"pkg:rpm/suse/openstack-murano&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-3.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"openstack-murano-doc","purl":"pkg:rpm/suse/openstack-murano-doc&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.0.2~dev3-3.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"python-Django","purl":"pkg:rpm/suse/python-Django&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.11.29-3.42.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"rabbitmq-server","purl":"pkg:rpm/suse/rabbitmq-server&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"3.6.16-3.13.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"grafana":"6.7.4-4.23.1","openstack-heat-templates":"0.0.0+git.1654529662.75fa04a-3.27.1","openstack-murano":"4.0.2~dev3-3.12.1","openstack-murano-api":"4.0.2~dev3-3.12.1","openstack-murano-doc":"4.0.2~dev3-3.12.1","openstack-murano-engine":"4.0.2~dev3-3.12.1","python-Django":"1.11.29-3.42.1","python-murano":"4.0.2~dev3-3.12.1","rabbitmq-server":"3.6.16-3.13.1","rabbitmq-server-plugins":"3.6.16-3.13.1","ruby2.1-rubygem-puma":"2.16.0-3.18.1"}]},"package":{"ecosystem":"SUSE:OpenStack Cloud Crowbar 8","name":"rubygem-puma","purl":"pkg:rpm/suse/rubygem-puma&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"2.16.0-3.18.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for ardana-ansible, ardana-cobbler, grafana, openstack-heat-templates, openstack-murano, python-Django, rabbitmq-server, rubygem-puma fixes the following issues:\n\nSecurity updates included on this update:\n\nardana-ansible, ardana-cobbler, grafana, openstack-heat-templates, openstack-murano, rabbitmq-server:\n- CVE-2020-1734: Fixed vulnerability where shell was enabled by default in a pipe lookup plugin subprocess. (SOC-11662, bnc#1164139)\n- CVE-2021-44716: Fixed uncontrolled memory consumption in go's net/http. (bsc#1193597)\n- CVE-2019-11287: Fixed DoS via 'X-Reason' HTTP Header in malicious Erlang format string. (bsc#1157665)\n\ngrafana:\n- CVE-2021-39226: Fixed snapshot authentication bypass (bsc#1191454).\n- CVE-2021-44716: Fixed uncontrolled memory consumption in go's net/http (bsc#1193597).\n\npython-Django:\n- CVE-2022-28346: Fixed vulnerability that could lead to SQL injection in QuerySet.annotate(),aggregate() and extra(). (bsc#1198398)\n- CVE-2022-34265: Fixed vulnerability that could lead to SQL injection via Trunc(kind) and Extract(lookup_name) arguments. (bsc#1201186)\n\nrubygem puma:\n- CVE-2022-24790: Fixed HTTP request smuggling vulnerability. (bsc#1197818)\n\nAdditional information about the this update:\n\nChanges in ardana-ansible:\n- Update to version 8.0+git.1660773729.3789a6d:\n  * Mitigate CVE-2020-1734 (SOC-11662)\n\nChanges in ardana-cobbler:\n- Update to version 8.0+git.1660773402.d845a45:\n  * Mitigate CVE-2020-1734 (SOC-11662)\n\nChanges in grafana:\n- Add CVE-2021-39226 patch (bsc#1191454, CVE-2021-39226)\n  * snapshot authentication bypass\n\n- Bump Go to 1.16 (bsc#1193597, CVE-2021-44716)\n  * Fix Go net/http: limit growth of header canonicalization cache.\n\nChanges in openstack-heat-templates:\n- Update to version 0.0.0+git.1654529662.75fa04a:\n  * doc: Comment out language option\n\nChanges in openstack-murano:\n- Update to version murano-4.0.2.dev3:\n  * [stable-only] Remove periodic-stable-jobs template\n\nChanges in openstack-murano:\n- Update to version murano-4.0.2.dev3:\n  * [stable-only] Remove periodic-stable-jobs template\n\nChanges in rabbitmq-server:\n- add explanation-format patch to fix CVE-2019-11287 (bsc#1157665)\n\nChanges in python-Django:\n- Rename Django-1.11.29.tar.gz.asc to Django-1.11.29.tar.gz.checksums.txt\n  to avoid source_validator incorrectly trying to use it as a detached\n  signature file for the sources tarball.\n- Remove unnecessary project.diff file.\n\n- Add CVE-2022-28346 patch (bsc#1198398, CVE-2022-28346)\n    * Potential SQL injection in QuerySet.annotate(),aggregate() and extra()\n- Add CVE-2022-34265 patch (bsc#1201186, CVE-2022-34265)\n    * SQL injection via Trunc(kind) and Extract(lookup_name) arguments\n\nChanges in rubygem-puma:\n- Add CVE-2022-24790: Fixed HTTP request smuggling vulnerability (bsc#1197818).\n\n  ","id":"SUSE-SU-2022:3338-1","modified":"2022-09-22T14:15:54Z","published":"2022-09-22T14:15:54Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2022/suse-su-20223338-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1157665"},{"type":"REPORT","url":"https://bugzilla.suse.com/1191454"},{"type":"REPORT","url":"https://bugzilla.suse.com/1193597"},{"type":"REPORT","url":"https://bugzilla.suse.com/1197818"},{"type":"REPORT","url":"https://bugzilla.suse.com/1198398"},{"type":"REPORT","url":"https://bugzilla.suse.com/1201186"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-11287"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-1734"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-39226"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-44716"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-24790"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-28346"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-34265"}],"related":["CVE-2019-11287","CVE-2020-1734","CVE-2021-39226","CVE-2021-44716","CVE-2022-24790","CVE-2022-28346","CVE-2022-34265"],"summary":"Security update for ardana-ansible, ardana-cobbler, grafana, openstack-heat-templates, openstack-murano, python-Django, rabbitmq-server, rubygem-puma","upstream":["CVE-2019-11287","CVE-2020-1734","CVE-2021-39226","CVE-2021-44716","CVE-2022-24790","CVE-2022-28346","CVE-2022-34265"]}