RHSA-2020:3003
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: Red Hat Ceph Storage 4.1 security and bug fix update
CVSS Metrics
- v3.1•MEDIUM•Score: 5.8CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:L
Affected Systems
- redhat•ceph
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-ansible
< 0:4.0.25-1.el7cp | < 0:4.0.25-1.el8cp
- redhat•ceph-base
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-base-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-common
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-common-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-debuginfo
< 2:14.2.8-81.el7cp
- redhat•ceph-debugsource
< 2:14.2.8-81.el8cp
- redhat•ceph-fuse
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-fuse-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-grafana-dashboards
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mds
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mds-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-medic
< 0:1.0.8-1.el7cp | < 0:1.0.8-1.el8cp
- redhat•ceph-mgr
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mgr-dashboard
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mgr-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-mgr-diskprediction-local
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mgr-k8sevents
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mgr-rook
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mon
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-mon-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-osd
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-osd-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-radosgw
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-radosgw-debuginfo
< 2:14.2.8-81.el8cp
- redhat•ceph-selinux
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-test
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•ceph-test-debuginfo
< 2:14.2.8-81.el8cp
- redhat•cockpit-ceph-installer
< 0:1.2-0.el7cp | < 0:1.2-0.el8cp
- redhat•libcephfs-devel
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•libcephfs2
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•libcephfs2-debuginfo
< 2:14.2.8-81.el8cp
- redhat•librados-devel
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•librados-devel-debuginfo
< 2:14.2.8-81.el8cp
- redhat•librados2
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•librados2-debuginfo
< 2:14.2.8-81.el8cp
- redhat•libradospp-devel
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•libradosstriper1
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•libradosstriper1-debuginfo
< 2:14.2.8-81.el8cp
- redhat•librbd-devel
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•librbd1
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•librbd1-debuginfo
< 2:14.2.8-81.el8cp
- redhat•librgw-devel
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•librgw2
< 2:14.2.8-81.el7cp | < 2:14.2.8-81.el8cp
- redhat•librgw2-debuginfo
< 2:14.2.8-81.el8cp
- redhat•nfs-ganesha
< 0:2.8.3-8.el7cp | < 0:2.8.3-8.el8cp
- redhat•nfs-ganesha-ceph
< 0:2.8.3-8.el7cp | < 0:2.8.3-8.el8cp
- redhat•nfs-ganesha-ceph-debuginfo
< 0:2.8.3-8.el8cp
- redhat•nfs-ganesha-debuginfo
< 0:2.8.3-8.el7cp | < 0:2.8.3-8.el8cp
Showing first 50 affected entries in server-rendered view.
References (59)
- https://access.redhat.com/errata/RHSA-2020:3003
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=1756077
- https://bugzilla.redhat.com/show_bug.cgi?id=1785445
- https://bugzilla.redhat.com/show_bug.cgi?id=1791143
- https://bugzilla.redhat.com/show_bug.cgi?id=1797774
- https://bugzilla.redhat.com/show_bug.cgi?id=1800644
- https://bugzilla.redhat.com/show_bug.cgi?id=1800664
- https://bugzilla.redhat.com/show_bug.cgi?id=1809003
- https://bugzilla.redhat.com/show_bug.cgi?id=1809870
- https://bugzilla.redhat.com/show_bug.cgi?id=1810949
- https://bugzilla.redhat.com/show_bug.cgi?id=1812962
- https://bugzilla.redhat.com/show_bug.cgi?id=1814177
- https://bugzilla.redhat.com/show_bug.cgi?id=1816478
- https://bugzilla.redhat.com/show_bug.cgi?id=1819667
- https://bugzilla.redhat.com/show_bug.cgi?id=1826002
- https://bugzilla.redhat.com/show_bug.cgi?id=1827607
- https://bugzilla.redhat.com/show_bug.cgi?id=1828232
- https://bugzilla.redhat.com/show_bug.cgi?id=1829389
- https://bugzilla.redhat.com/show_bug.cgi?id=1829646
- https://bugzilla.redhat.com/show_bug.cgi?id=1829758
- https://bugzilla.redhat.com/show_bug.cgi?id=1829985
- https://bugzilla.redhat.com/show_bug.cgi?id=1830330
- https://bugzilla.redhat.com/show_bug.cgi?id=1833309
- https://bugzilla.redhat.com/show_bug.cgi?id=1833685
- https://bugzilla.redhat.com/show_bug.cgi?id=1834697
- https://bugzilla.redhat.com/show_bug.cgi?id=1834974
- https://bugzilla.redhat.com/show_bug.cgi?id=1835216
- https://bugzilla.redhat.com/show_bug.cgi?id=1835777
- https://bugzilla.redhat.com/show_bug.cgi?id=1837645
- https://bugzilla.redhat.com/show_bug.cgi?id=1838931
- https://bugzilla.redhat.com/show_bug.cgi?id=1838959
- https://bugzilla.redhat.com/show_bug.cgi?id=1838996
- https://bugzilla.redhat.com/show_bug.cgi?id=1839134
- https://bugzilla.redhat.com/show_bug.cgi?id=1839149
- https://bugzilla.redhat.com/show_bug.cgi?id=1839216
- https://bugzilla.redhat.com/show_bug.cgi?id=1839228
- https://bugzilla.redhat.com/show_bug.cgi?id=1840730
- https://bugzilla.redhat.com/show_bug.cgi?id=1840744
- https://bugzilla.redhat.com/show_bug.cgi?id=1840858
- https://bugzilla.redhat.com/show_bug.cgi?id=1843500
- https://bugzilla.redhat.com/show_bug.cgi?id=1843569
- https://bugzilla.redhat.com/show_bug.cgi?id=1844496
- https://bugzilla.redhat.com/show_bug.cgi?id=1845668
- https://bugzilla.redhat.com/show_bug.cgi?id=1846995
- https://bugzilla.redhat.com/show_bug.cgi?id=1849559
- https://bugzilla.redhat.com/show_bug.cgi?id=1849803
- https://bugzilla.redhat.com/show_bug.cgi?id=1850814
- https://bugzilla.redhat.com/show_bug.cgi?id=1850938
- https://bugzilla.redhat.com/show_bug.cgi?id=1854083
- https://security.access.redhat.com/data/csaf/v2/advisories/2020/rhsa-2020_3003.json
- https://access.redhat.com/security/cve/CVE-2020-1760
- https://www.cve.org/CVERecord?id=CVE-2020-1760
- https://nvd.nist.gov/vuln/detail/CVE-2020-1760
- https://www.openwall.com/lists/oss-security/2020/04/07/1
- https://access.redhat.com/security/cve/CVE-2020-10753
- https://www.cve.org/CVERecord?id=CVE-2020-10753
- https://nvd.nist.gov/vuln/detail/CVE-2020-10753
- https://ceph.io/releases/v14-2-10-nautilus-released/