From: Krzysztof Opasiak Date: Thu, 30 May 2019 19:34:58 +0000 (+0200) Subject: Improve security release notes X-Git-Tag: 0.5.0~23 X-Git-Url: https://gerrit.onap.org/r/gitweb?p=ccsdk%2Fdistribution.git;a=commitdiff_plain;h=3e0408db3b7bf964947dbd2b13efa71a21e10f38 Improve security release notes In order to provide users with more details of project's state in terms of security let's divide the security release notes into three sections: - Fixed Security Issues Contains a list of security fixes merged during this release (especially those reported via OJSI tickets). - Known Security Issues Contains a list of vulnerabilities detected in project during release which have not been fixed yet and thus should be mitigated by the user. - Known Vulnerabilities in Used Modules Contains information about NexusIQ scan results Issue-ID: SECCOM-238 Signed-off-by: Krzysztof Opasiak Change-Id: Ibf4f0300100ead783ebd820ed2c7c23bceb1f13b --- diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 75bf44f4..84ff1cdd 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -34,6 +34,14 @@ The full list of bug fixes in the CCSDK Dublin release may be found at +**Security Notes** + +*Fixed Security Issues* + +*Known Security Issues* + +*Known Vulnerabilities in Used Modules* + Quick Links: - `CCSDK project page `_ @@ -72,9 +80,9 @@ The full list of known issues in CCSDK may be found in the ONAP Jira at `_ - + - `Passing Badge information for CCSDK `_ - + - `Project Vulnerability Review Table for CCSDK `_ Version: 0.3.2 @@ -108,9 +116,9 @@ The full list of known issues in CCSDK may be found in the ONAP Jira at `_ - + - `Passing Badge information for CCSDK `_ - + - `Project Vulnerability Review Table for CCSDK `_ Version: 0.2.4 @@ -164,9 +172,9 @@ CCSDK code has been formally scanned during build time using NexusIQ and all Cri Quick Links: - `CCSDK project page `_ - + - `Passing Badge information for CCSDK `_ - + - `Project Vulnerability Review Table for CCSDK `_ **Upgrade Notes** @@ -220,4 +228,3 @@ The Common Controller SDK provides the following functionality : **Deprecation Notes** **Other** -