SUSE: 2019:2994-1 important: ceph
Summary
This update for ceph fixes the following issues: - A previous update introduced a regression with the potential to cause RocksDB data corruption in Nautilus (bsc#1156282). - Support for iSCSI target-level CHAP authentication was added (bsc#1145617). - Implemented validation and rendering of iSCSI controls based "type" (bsc#1140491). - Fixed an error while editing iSCSI image advanced settings (bsc#1146656). - Fixed a ceph-volume regression. SES customers were never exposed to this regression (bsc#1132767). - Fixed a denial of service vulnerability where an unauthenticated client of Ceph Object Gateway could trigger a crash from an uncaught exception (bsc#1145093, CVE-2019-10222) - Nautilus-based librbd clients could not open images on Jewel clusters (bsc#1151994). - The RGW num_rados_handles has been removed (bsc#1151995). - "osd_deep_scrub_large_omap_object_key_threshold" has been lowered in Nautilus ...
Read the Full AdvisoryReferences
#1132767 #1134444 #1135584 #1137503 #1140491
#1141174 #1145093 #1145617 #1145618 #1145759
#1146656 #1147132 #1149093 #1150406 #1151439
#1151990 #1151991 #1151992 #1151993 #1151994
#1151995 #1152002 #1156282
Cross- CVE-2019-10222
Affected Products:
SUSE Enterprise Storage 6
https://www.suse.com/security/cve/CVE-2019-10222.html
https://bugzilla.suse.com/1132767
https://bugzilla.suse.com/1134444
https://bugzilla.suse.com/1135584
https://bugzilla.suse.com/1137503
https://bugzilla.suse.com/1140491
https://bugzilla.suse.com/1141174
https://bugzilla.suse.com/1145093
https://bugzilla.suse.com/1145617
https://bugzilla.suse.com/1145618
https://bugzilla.suse.com/1145759
https://bugzilla.suse.com/1146656
https://bugzilla.suse.com/1147132
https://bugzilla.suse.com/1149093
https://bugzilla.suse.com/1150406
https://bugzilla.suse.com/1151439
https://bugzilla...
Read the Full Advisory