SUSE-SU-2017:1479-1

Source
https://www.suse.com/support/update/announcement/2017/suse-su-20171479-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2017:1479-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2017:1479-1
Related
Published
2017-06-02T13:03:43Z
Modified
2017-06-02T13:03:43Z
Summary
Security update for ceph
Details

This update provides Ceph 10.2.6, which brings fixes and enhancements:

This security issue was fixed:

  • CVE-2016-9579: Do not abort RGW server when accepting a CORS request with short origin. (bsc#1014986)

These non-security issues were fixed:

  • common: Add rdbmap to ceph-common. (bsc#1029482)
  • tools/rados: Default to include clone objects when executing 'cache-flush-evict-all'. (bsc#1003891)
  • mon, ceph-disk: Add lockbox permissions to bootstrap-osd. (bsc#1008435)
  • cephvolumeclient: Fix recoverauth_meta() method. (bsc#1008501)
  • systemd/ceph-disk: Reduce ceph-disk flock contention. (bsc#1012100)
  • doc: Add verbiage to rbdmap manpage. (bsc#1015748)
  • doc: Add Install section to systemd rbdmap.service file. (bsc#1015748)
  • doc: Remove references to mds destroy from ceph-deploy man page. (bsc#970642)
References

Affected packages

SUSE:Enterprise Storage 4 / ceph

Package

Name
ceph
Purl
pkg:rpm/suse/ceph&distro=SUSE%20Enterprise%20Storage%204

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.2.6+git.1490339825.57146d8-11.7

Ecosystem specific

{
    "binaries": [
        {
            "rbd-mirror": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-osd": "10.2.6+git.1490339825.57146d8-11.7",
            "librbd1": "10.2.6+git.1490339825.57146d8-11.7",
            "python-ceph-compat": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-fuse": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-common": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-mds": "10.2.6+git.1490339825.57146d8-11.7",
            "librgw2": "10.2.6+git.1490339825.57146d8-11.7",
            "python-rbd": "10.2.6+git.1490339825.57146d8-11.7",
            "librados2": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-mon": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-test": "10.2.6+git.1490339825.57146d8-11.7",
            "rbd-nbd": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-radosgw": "10.2.6+git.1490339825.57146d8-11.7",
            "libcephfs1": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-base": "10.2.6+git.1490339825.57146d8-11.7",
            "python-rados": "10.2.6+git.1490339825.57146d8-11.7",
            "python-cephfs": "10.2.6+git.1490339825.57146d8-11.7",
            "libradosstriper1": "10.2.6+git.1490339825.57146d8-11.7",
            "rbd-fuse": "10.2.6+git.1490339825.57146d8-11.7"
        }
    ]
}

SUSE:Enterprise Storage 4 / ceph-test

Package

Name
ceph-test
Purl
pkg:rpm/suse/ceph-test&distro=SUSE%20Enterprise%20Storage%204

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.2.6+git.1490339825.57146d8-11.7

Ecosystem specific

{
    "binaries": [
        {
            "rbd-mirror": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-osd": "10.2.6+git.1490339825.57146d8-11.7",
            "librbd1": "10.2.6+git.1490339825.57146d8-11.7",
            "python-ceph-compat": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-fuse": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-common": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-mds": "10.2.6+git.1490339825.57146d8-11.7",
            "librgw2": "10.2.6+git.1490339825.57146d8-11.7",
            "python-rbd": "10.2.6+git.1490339825.57146d8-11.7",
            "librados2": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-mon": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-test": "10.2.6+git.1490339825.57146d8-11.7",
            "rbd-nbd": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-radosgw": "10.2.6+git.1490339825.57146d8-11.7",
            "libcephfs1": "10.2.6+git.1490339825.57146d8-11.7",
            "ceph-base": "10.2.6+git.1490339825.57146d8-11.7",
            "python-rados": "10.2.6+git.1490339825.57146d8-11.7",
            "python-cephfs": "10.2.6+git.1490339825.57146d8-11.7",
            "libradosstriper1": "10.2.6+git.1490339825.57146d8-11.7",
            "rbd-fuse": "10.2.6+git.1490339825.57146d8-11.7"
        }
    ]
}