From 838c3ce5bf4a09e98e3c775b82fe0cc1378dff3a Mon Sep 17 00:00:00 2001 From: Nathan Cutler Date: Thu, 21 May 2020 13:57:56 +0200 Subject: [PATCH] PendingReleaseNotes: drop mention of CVE fix CVEs fixed before the first stable Pacific release need not be mentioned explicitly in the release notes. Signed-off-by: Nathan Cutler --- PendingReleaseNotes | 2 -- 1 file changed, 2 deletions(-) diff --git a/PendingReleaseNotes b/PendingReleaseNotes index 75838a22cb9..bfc978c8469 100644 --- a/PendingReleaseNotes +++ b/PendingReleaseNotes @@ -1,8 +1,6 @@ >=16.0.0 -------- -* CVE-2020-10736: Fixes an authorization bypass in monitor and manager daemons - * Monitors now have config option ``mon_allow_pool_size_one``, which is disabled by default. However, if enabled, user now have to pass the ``--yes-i-really-mean-it`` flag to ``osd pool set size 1``, if they are really -- 2.47.3