SUSE-SU-2017:2922-1
Dashboard / Vulnerabilities / SUSE-SU-2017:2922-1
SUSE-SU-2017:2922-1
Summary: Security update for ceph
Details: CEPH was updated to version 10.2.10, which brings several fixes and enhancements. Upstream 10.2.10 release summary can be found at: https://ceph.com/releases/v10-2-10-jewel-released/ Security issues fixed: - CVE-2017-7519: libradosstriper processed arbitrary printf placeholders in user input (bsc#1043767) Non-security issues fixed: - Add explicit Before=ceph.target to systemd service file. (bsc#1042973) - ceph-disk omits '--runtime' when enabling ceph-osd@$ID.service units. (bsc#1051598, bsc#1056536) - Make it possible to customize ceph-disk's timeout and set default to 3h. (bsc#1051432) - Move ceph-disk from ceph-common to ceph-base.
References: https://www.suse.com/support/update/announcement/2017/suse-su-20172922-1/, https://bugzilla.suse.com/1042973, https://bugzilla.suse.com/1043767, https://bugzilla.suse.com/1051432, https://bugzilla.suse.com/1051598, https://bugzilla.suse.com/1056536, https://www.suse.com/security/cve/CVE-2017-7519
Affected packages
Package
Name: ceph
Purl: pkg:rpm/suse/ceph&distro=SUSE%20Enterprise%20Storage%204
Affected ranges
Type: ECOSYSTEM
Events:
