FS#70450 - [ceph] [Security] insufficient validation (CVE-2021-20288)

Attached to Project: Community Packages
Opened by Andrea Denisse Gómez-Martínez (denisse) - Wednesday, 14 April 2021, 20:23 GMT
Last edited by Thore Bödecker (foxxx0) - Sunday, 16 May 2021, 18:13 GMT
Task Type Bug Report
Category Security
Status Closed
Assigned To Thore Bödecker (foxxx0)
Architecture All
Severity High
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 2
Private No
This task depends upon

Closed by  Thore Bödecker (foxxx0)
Sunday, 16 May 2021, 18:13 GMT
Reason for closing:  Fixed
Additional comments about closing:  15.2.12 packages are now available in our repo
Comment by Jonas Witschel (diabonas) - Friday, 14 May 2021, 19:39 GMT
Ceph is vulnerable to three further security issues (CVE-2021-3509, CVE-2021-3524, CVE-2021-3531). All issues, including CVE-2021-20288, are fixed by upgrading Ceph to the latest version 5.2.12 (https://github.com/ceph/ceph/releases/tag/v15.2.12).

Loading...