Uploaded image for project: 'Optimization Framework'
  1. Optimization Framework
  2. OPTFRA-927

fix CRITICAL weak-cryptography issues identified in sonarcloud

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: High High
    • Honolulu Release
    • Honolulu Release
    • CMSO

      Sonarcloud identified the following security bugs in your project and, as agreed by the TSC, should be fixed within the Honolulu release. Any not finished in Honolulu must be fixed within the Istanbul release. Follow each of the URLs for details on each each bug, along with recommended fixes.

       
      If any of the links below fail, please find your code on the master list found at <https://sonarcloud.io/organizations/onap/issues?resolved=false&sonarsourceSecurity=weak-cryptography>.
       

      https://sonarcloud.io/project/issues?id=onap_clamp&issues=AXGFux-8l8tlF3n9ETOc&open=AXGFux-8l8tlF3n9ETOc

       

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-optimizer/src/main/java/org/onap/optf/cmso/optimizer/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 102
      Effort: 15min
      Creation-Date: 2019-03-28T10:59:17+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmJS_1z56bVZpwLK&open=AXcGCmJS_1z56bVZpwLK

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-optimizer/src/main/java/org/onap/optf/cmso/optimizer/common/PropertiesManagement.java
      Message: Use secure mode and padding scheme.
      Severity: BLOCKER
      Line: 104
      Effort:
      Creation-Date: 2019-03-28T10:59:17+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXBYQboUwbQRJ3RYnnsp&open=AXBYQboUwbQRJ3RYnnsp

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-optimizer/src/main/java/org/onap/optf/cmso/optimizer/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 118
      Effort: 15min
      Creation-Date: 2019-03-28T10:59:17+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmJS_1z56bVZpwLL&open=AXcGCmJS_1z56bVZpwLL

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-optimizer/src/main/java/org/onap/optf/cmso/optimizer/common/PropertiesManagement.java
      Message: Use secure mode and padding scheme.
      Severity: BLOCKER
      Line: 120
      Effort:
      Creation-Date: 2019-03-28T10:59:17+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXBYQboUwbQRJ3RYnnsq&open=AXBYQboUwbQRJ3RYnnsq

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-service/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 103
      Effort: 15min
      Creation-Date: 2018-09-20T00:38:15+0200
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmNX_1z56bVZpwLM&open=AXcGCmNX_1z56bVZpwLM

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-service/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use secure mode and padding scheme.
      Severity: BLOCKER
      Line: 105
      Effort:
      Creation-Date: 2018-09-20T00:38:15+0200
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXBYQb9twbQRJ3RYnnsr&open=AXBYQb9twbQRJ3RYnnsr

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-service/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 119
      Effort: 15min
      Creation-Date: 2018-09-20T00:38:15+0200
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmNX_1z56bVZpwLN&open=AXcGCmNX_1z56bVZpwLN

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-service/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use secure mode and padding scheme.
      Severity: BLOCKER
      Line: 121
      Effort:
      Creation-Date: 2018-09-20T00:38:15+0200
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXBYQb9twbQRJ3RYnnss&open=AXBYQb9twbQRJ3RYnnss

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 104
      Effort: 15min
      Creation-Date: 2019-03-13T15:21:12+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmVz_1z56bVZpwLR&open=AXcGCmVz_1z56bVZpwLR

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use secure mode and padding scheme.
      Severity: BLOCKER
      Line: 106
      Effort:
      Creation-Date: 2019-03-13T15:21:12+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXBYQczIwbQRJ3RYnnsv&open=AXBYQczIwbQRJ3RYnnsv

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 120
      Effort: 15min
      Creation-Date: 2019-03-13T15:21:12+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmVz_1z56bVZpwLS&open=AXcGCmVz_1z56bVZpwLS

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-ticketmgt/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use secure mode and padding scheme.
      Severity: BLOCKER
      Line: 122
      Effort:
      Creation-Date: 2019-03-13T15:21:12+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXBYQczIwbQRJ3RYnnsw&open=AXBYQczIwbQRJ3RYnnsw

      Project: onap_optf-cmso
      Component: onap_optf-cmso:cmso-topology/src/main/java/org/onap/optf/cmso/common/PropertiesManagement.java
      Message: Use a dynamically-generated, random IV.
      Severity: CRITICAL
      Line: 96
      Effort: 15min
      Creation-Date: 2019-03-26T20:13:47+0100
      URL: https://sonarcloud.io/project/issues?id=onap_optf-cmso&issues=AXcGCmUD_1z56bVZpwLP&open=AXcGCmUD_1z56bVZpwLP

            malar malar
            zwarico Amy Zwarico
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: