Announcement - Flexible High Performance Cloud - OpenStack Controllers and Hypervisors CVE Remediation

Scheduled for May 14, 09:30 - 13:30 NZST

Scheduled

Description:
This maintenance includes applying mitigations for recent Linux CVEs and fix excessive Kernel messages outlined below:
- Apply mitigations for Copy.Fail and Dirty Frag Linux vulnerabilities on Openstack control plane servers (controllers and hypervisors )
- Apply the fix for excessive logging messages in OpenStack controllers and compute nodes

Why:
- To apply mitigations for the Copy.Fail and Dirty Frag Linux CVEs on OpenStack Controllers and Hypervisors
- To reduce unnecessary error messages in the logs of controllers and compute nodes (this has been confirmed non-critical by StackHPC)

Potential impact:
- For the CVE mitigations, the restart of the controllers might render the OpenStack dashboard and APIs unavailable while the node is being rebooted. There is no expected impact for Hypervisors as these won't be rebooted.
- No impact is expected for the excessive logging fix. We have tested the mitigations and deployed already on some hosts, and there were no adverse impacts observed.

Duration:
- Work still start from 9:30AM, 14 May 2026 and should be done before 2PM on the same day.
Posted May 13, 2026 - 17:01 NZST
This scheduled maintenance affects: Flexible High Performance Cloud Services (FlexiHPC Dashboard (web interface), FlexiHPC CLI interface, Public API of the FlexiHPC Service).