summaryrefslogtreecommitdiff
path: root/releasenotes/notes/bug-1901207-13762f85b8a04481.yaml
diff options
context:
space:
mode:
Diffstat (limited to 'releasenotes/notes/bug-1901207-13762f85b8a04481.yaml')
-rw-r--r--releasenotes/notes/bug-1901207-13762f85b8a04481.yaml7
1 files changed, 7 insertions, 0 deletions
diff --git a/releasenotes/notes/bug-1901207-13762f85b8a04481.yaml b/releasenotes/notes/bug-1901207-13762f85b8a04481.yaml
new file mode 100644
index 000000000..26e957a0d
--- /dev/null
+++ b/releasenotes/notes/bug-1901207-13762f85b8a04481.yaml
@@ -0,0 +1,7 @@
+---
+security:
+ - |
+ [`bug 1901207 <https://bugs.launchpad.net/keystone/+bug/1901207>`_]
+ Policy enforcement for application credentials has been updated to protect
+ against invalid ownership checks resulting in unauthorized users being able
+ to get and delete application credentials for other users.