SUSE-SU-2017:1479-1
Dashboard / Vulnerabilities / SUSE-SU-2017:1479-1
SUSE-SU-2017:1479-1
Summary: Security update for ceph
Details: This update provides Ceph 10.2.6, which brings fixes and enhancements: This security issue was fixed: - CVE-2016-9579: Do not abort RGW server when accepting a CORS request with short origin. (bsc#1014986) These non-security issues were fixed: - common: Add rdbmap to ceph-common. (bsc#1029482) - tools/rados: Default to include clone objects when executing 'cache-flush-evict-all'. (bsc#1003891) - mon, ceph-disk: Add lockbox permissions to bootstrap-osd. (bsc#1008435) - ceph_volume_client: Fix _recover_auth_meta() method. (bsc#1008501) - systemd/ceph-disk: Reduce ceph-disk flock contention. (bsc#1012100) - doc: Add verbiage to rbdmap manpage. (bsc#1015748) - doc: Add Install section to systemd rbdmap.service file. (bsc#1015748) - doc: Remove references to mds destroy from ceph-deploy man page. (bsc#970642)
References: https://www.suse.com/support/update/announcement/2017/suse-su-20171479-1/, https://bugzilla.suse.com/1003891, https://bugzilla.suse.com/1008435, https://bugzilla.suse.com/1008501, https://bugzilla.suse.com/1012100, https://bugzilla.suse.com/1014986, https://bugzilla.suse.com/1015748, https://bugzilla.suse.com/1029482, https://bugzilla.suse.com/970642, https://www.suse.com/security/cve/CVE-2016-9579
Affected packages
Package
Name: ceph
Purl: pkg:rpm/suse/ceph&distro=SUSE%20Enterprise%20Storage%204
Affected ranges
Type: ECOSYSTEM
Events:
