d765a344ee
Cyborg now does not have a code security check, which may connive at possible security issues. For example, shell-related operations for drivers may be insecure. Current "sudo lspci -nnn -D" in huawei ascend driver code[0] is insecure, but there is no any job/test that can check the potential security issues. So this patch introduces bandit as a code security check. [0]:https://github.com/openstack/cyborg/blob/master/cyborg/accelerator/drivers/aichip/huawei/ascend.py#L69 Change-Id: Ia1f9acbbd176180cb5fe97b1a2eee5f98a95dea6 |
||
---|---|---|
.. | ||
basic-framework-28d6b42d9bf684af.yaml | ||
cyborg-nova-interaction-8fe4e49e3c9b3b7b.yaml | ||
cyborg-status-upgrade-check-framework-567f8df30b971f13.yaml | ||
drop-python2-support-in-ussuri-e64f79db4e88ca19.yaml | ||
fpga-driver-8b1635e92b1297c1.yaml | ||
generic-driver-88427acd7c7c12df.yaml | ||
implement_oslo_privsep-4fc6e15360c92772.yaml | ||
introduce-bandit-security-linter-339d3f12b6200d64.yaml | ||
spdk-driver-89b178e1a2db29c0.yaml |