Marked for autoremoval on 08 February due to uwsgi: #969372high
Version 1:11.0.0-2 of manila is marked for autoremoval from testing on Mon 08 Feb 2021. It depends (transitively) on uwsgi, affected by #969372. You should try to prevent the removal by fixing these RC bugs.
CVE-2020-9543: OpenStack Manila <7.4.1, >=8.0.0 <8.1.1, and >=9.0.0 <9.1.1 allows attackers to view, update, delete, or share resources that do not belong to them, because of a context-free lookup of a UUID. Attackers may also create resources, such as shared file systems and groups of shares on such share networks.
Please fix it.
Standards version of the package is outdated.
wishlist
The package should be updated to follow the last version of Debian Policy
(Standards-Version 4.5.1 instead of
4.4.1).