From 3e0408db3b7bf964947dbd2b13efa71a21e10f38 Mon Sep 17 00:00:00 2001 From: Krzysztof Opasiak Date: Thu, 30 May 2019 21:34:58 +0200 Subject: [PATCH] Improve security release notes In order to provide users with more details of project's state in terms of security let's divide the security release notes into three sections: - Fixed Security Issues Contains a list of security fixes merged during this release (especially those reported via OJSI tickets). - Known Security Issues Contains a list of vulnerabilities detected in project during release which have not been fixed yet and thus should be mitigated by the user. - Known Vulnerabilities in Used Modules Contains information about NexusIQ scan results Issue-ID: SECCOM-238 Signed-off-by: Krzysztof Opasiak Change-Id: Ibf4f0300100ead783ebd820ed2c7c23bceb1f13b --- docs/release-notes.rst | 21 ++++++++++++++------- 1 file changed, 14 insertions(+), 7 deletions(-) diff --git a/docs/release-notes.rst b/docs/release-notes.rst index 75bf44f4..84ff1cdd 100644 --- a/docs/release-notes.rst +++ b/docs/release-notes.rst @@ -34,6 +34,14 @@ The full list of bug fixes in the CCSDK Dublin release may be found at +**Security Notes** + +*Fixed Security Issues* + +*Known Security Issues* + +*Known Vulnerabilities in Used Modules* + Quick Links: - `CCSDK project page `_ @@ -72,9 +80,9 @@ The full list of known issues in CCSDK may be found in the ONAP Jira at `_ - + - `Passing Badge information for CCSDK `_ - + - `Project Vulnerability Review Table for CCSDK `_ Version: 0.3.2 @@ -108,9 +116,9 @@ The full list of known issues in CCSDK may be found in the ONAP Jira at `_ - + - `Passing Badge information for CCSDK `_ - + - `Project Vulnerability Review Table for CCSDK `_ Version: 0.2.4 @@ -164,9 +172,9 @@ CCSDK code has been formally scanned during build time using NexusIQ and all Cri Quick Links: - `CCSDK project page `_ - + - `Passing Badge information for CCSDK `_ - + - `Project Vulnerability Review Table for CCSDK `_ **Upgrade Notes** @@ -220,4 +228,3 @@ The Common Controller SDK provides the following functionality : **Deprecation Notes** **Other** - -- 2.16.6