SUSE-RU-2018:0779-1

    Dashboard / Vulnerabilities / SUSE-RU-2018:0779-1

    SUSE-RU-2018:0779-1

    Published: 22 Mar 2018Last Modified: 4 Feb 2026
    Upstream:
    Aliases:

    Summary: Recommended update for drbd and drbd-utils

    Details: This update for drbd and drbd-utils provides the following fixes: Changes in drbd: - Fix a possible kernel trace while starting the initial syncing of a stacked drbd. (bsc#1058770) - Fix auto promotion after split-brain. (bsc#1074228) - Support passing '--force' to drbdadm dump-md. (bsc#1077176) - Many upstream fixes in version 9.0.8 (bsc#1045473): * Fix a race condition between adding connections and receiving data. * Fix a OOPS on a diskfull node when a request from a diskless node. * Fix a distributed deadlock when doing a discard/write-same burst. * Fix an issue with diskless nodes adopting wrong current UUIDs. * Fix wrongly rejected two-phase-state transactions. * Fix initial resync, triggered by '--force primary'. * Speed-up AL-updates with bio flags REQ_META and REQ_PRIO. * Merged changes from 8.4.10 and with that compatibility with Linux-4.12. - The kernel modules were rebuilt with retpoline support to mitigate Spectre v2 (bsc#1068032 CVE-2017-5715) Changes in drbd-utils: - Fix the wrong device due to udev change. (bsc#1059566) - Support passing '--force' to drbdadm dump-md. (bsc#1077176) - Fix a possible kernel trace while starting the initial syncing of a stacked drbd. (bsc#1058770) - Backport some fixes of peer_device objects. - Do not hardcode loglevel local5 and make it possible to change that using --logfacility. (bsc#1064402) - Update documentation and examples regarding fencing: it is now moved from the dir to the net section. (bsc#1061145) - Skip running drbdadm sh-b-pri in drbd9. (bsc#1061147) - Disable quorum in default configuration. (bsc#1032142) - Fix auto promotion after split-brain. (bsc#1074228) - Use upstream's RA.

    Affected packages

    Package

    Name: drbd

    Purl: pkg:rpm/suse/drbd&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP2

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -9.0.8+git.c8bc3670-10.8.1

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High