RHSA-2025:21068
Vulnerability Summary
Timeline
Description
Red Hat Security Advisory: Red Hat Ceph Storage 8.1 bug fix update
CVSS Metrics
- v3.1•HIGH•Score: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Systems
- redhat•ceph
< 2:19.2.1-292.el9cp
- redhat•ceph-base
< 2:19.2.1-292.el9cp
- redhat•ceph-base-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-common
< 2:19.2.1-292.el9cp
- redhat•ceph-common-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-debugsource
< 2:19.2.1-292.el9cp
- redhat•ceph-exporter-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-fuse
< 2:19.2.1-292.el9cp
- redhat•ceph-fuse-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-immutable-object-cache
< 2:19.2.1-292.el9cp
- redhat•ceph-immutable-object-cache-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-mds-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-mgr-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-mib
< 2:19.2.1-292.el9cp
- redhat•ceph-mon-client-nvmeof-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-mon-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-osd-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-radosgw-debuginfo
< 2:19.2.1-292.el9cp
- redhat•ceph-resource-agents
< 2:19.2.1-292.el9cp
- redhat•ceph-selinux
< 2:19.2.1-292.el9cp
- redhat•ceph-test-debuginfo
< 2:19.2.1-292.el9cp
- redhat•cephadm
< 2:19.2.1-292.el9cp
- redhat•cephfs-mirror-debuginfo
< 2:19.2.1-292.el9cp
- redhat•cephfs-top
< 2:19.2.1-292.el9cp
- redhat•libcephfs-daemon-debuginfo
< 2:19.2.1-292.el9cp
- redhat•libcephfs-devel
< 2:19.2.1-292.el9cp
- redhat•libcephfs-proxy2
< 2:19.2.1-292.el9cp
- redhat•libcephfs-proxy2-debuginfo
< 2:19.2.1-292.el9cp
- redhat•libcephfs2
< 2:19.2.1-292.el9cp
- redhat•libcephfs2-debuginfo
< 2:19.2.1-292.el9cp
- redhat•libcephsqlite-debuginfo
< 2:19.2.1-292.el9cp
- redhat•librados-devel
< 2:19.2.1-292.el9cp
- redhat•librados-devel-debuginfo
< 2:19.2.1-292.el9cp
- redhat•librados2
< 2:19.2.1-292.el9cp
- redhat•librados2-debuginfo
< 2:19.2.1-292.el9cp
- redhat•libradospp-devel
< 2:19.2.1-292.el9cp
- redhat•libradosstriper1
< 2:19.2.1-292.el9cp
- redhat•libradosstriper1-debuginfo
< 2:19.2.1-292.el9cp
- redhat•librbd-devel
< 2:19.2.1-292.el9cp
- redhat•librbd1
< 2:19.2.1-292.el9cp
- redhat•librbd1-debuginfo
< 2:19.2.1-292.el9cp
- redhat•librgw-devel
< 2:19.2.1-292.el9cp
- redhat•librgw2
< 2:19.2.1-292.el9cp
- redhat•librgw2-debuginfo
< 2:19.2.1-292.el9cp
- redhat•python3-ceph-argparse
< 2:19.2.1-292.el9cp
- redhat•python3-ceph-common
< 2:19.2.1-292.el9cp
- redhat•python3-cephfs
< 2:19.2.1-292.el9cp
- redhat•python3-cephfs-debuginfo
< 2:19.2.1-292.el9cp
- redhat•python3-rados
< 2:19.2.1-292.el9cp
Showing first 50 affected entries in server-rendered view.
References (30)
- https://access.redhat.com/errata/RHSA-2025:21068
- https://access.redhat.com/security/updates/classification/#important
- https://bugzilla.redhat.com/show_bug.cgi?id=2274457
- https://bugzilla.redhat.com/show_bug.cgi?id=2336611
- https://bugzilla.redhat.com/show_bug.cgi?id=2355073
- https://bugzilla.redhat.com/show_bug.cgi?id=2357806
- https://bugzilla.redhat.com/show_bug.cgi?id=2362830
- https://bugzilla.redhat.com/show_bug.cgi?id=2386873
- https://bugzilla.redhat.com/show_bug.cgi?id=2387009
- https://bugzilla.redhat.com/show_bug.cgi?id=2390042
- https://bugzilla.redhat.com/show_bug.cgi?id=2390980
- https://bugzilla.redhat.com/show_bug.cgi?id=2393479
- https://bugzilla.redhat.com/show_bug.cgi?id=2394489
- https://bugzilla.redhat.com/show_bug.cgi?id=2397257
- https://bugzilla.redhat.com/show_bug.cgi?id=2400637
- https://bugzilla.redhat.com/show_bug.cgi?id=2404655
- https://bugzilla.redhat.com/show_bug.cgi?id=2404669
- https://bugzilla.redhat.com/show_bug.cgi?id=2405301
- https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_21068.json
- https://access.redhat.com/security/cve/CVE-2024-11831
- https://bugzilla.redhat.com/show_bug.cgi?id=2312579
- https://www.cve.org/CVERecord?id=CVE-2024-11831
- https://nvd.nist.gov/vuln/detail/CVE-2024-11831
- https://github.com/yahoo/serialize-javascript/commit/f27d65d3de42affe2aac14607066c293891cec4e
- https://github.com/yahoo/serialize-javascript/pull/173
- https://access.redhat.com/security/cve/CVE-2024-47866
- https://bugzilla.redhat.com/show_bug.cgi?id=2392386
- https://www.cve.org/CVERecord?id=CVE-2024-47866
- https://nvd.nist.gov/vuln/detail/CVE-2024-47866
- https://github.com/ceph/ceph/security/advisories/GHSA-mgrm-g92q-f8h8