This update for ceph fixes the following issues:
- ceph was updated to 15.2.11-83-g8a15f484c2:
* CVE-2021-20288: Fixed unauthorized global_id reuse (bsc#1183074).
* disk gets replaced with no rocksdb/wal (bsc#1184231).
* BlueStore handles huge(>4GB) writes from RocksDB to BlueFS poorly,
potentially causing data corruption (bsc#1183899).
This update was imported from the SUSE:SLE-15-SP2:Update update project.
Patch Instructions:
To install this openSUSE Security Update use the SUSE recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 15.2:
zypper in -t patch openSUSE-2021-672=1
- openSUSE Leap 15.2 (noarch):
ceph-grafana-dashboards-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-cephadm-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-dashboard-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-diskprediction-cloud-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-diskprediction-local-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-k8sevents-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-modules-core-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-mgr-rook-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-prometheus-alerts-15.2.11.83+g8a15f484c2-lp152.2.15.1
cephadm-15.2.11.83+g8a15f484c2-lp152.2.15.1
- openSUSE Leap 15.2 (x86_64):
ceph-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-base-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-base-debuginfo-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-common-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-common-debuginfo-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-debugsource-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-fuse-15.2.11.83+g8a15f484c2-lp152.2.15.1
ceph-fuse-debuginfo-15.2.11.83+g8a15f484c2-...
Read the Full Advisoryhttps://www.suse.com/security/cve/CVE-2021-20288.html
https://bugzilla.suse.com/1183074
https://bugzilla.suse.com/1183899
https://bugzilla.suse.com/1184231
Get the latest Linux and open source security news straight to your inbox.