Issued:
2020-05-19
Updated:
2020-05-19

RHSA-2020:2231 - Important: Red Hat Ceph Storage 4.1 security, bug fix, and enhancement update


Synopsis

Important: Red Hat Ceph Storage 4.1 security, bug fix, and enhancement update

Type/Severity

Security Advisory Important

Topic

Red Hat Ceph Storage 4.1 is now available.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Red Hat Ceph Storage is a scalable, open, software-defined storage platform that combines the most stable version of the Ceph storage system with a Ceph management platform, deployment utilities, and support services.

Security Fix(es):

  • ceph-ansible: hard coded credential in ceph-ansible playbook (CVE-2020-1716)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgements, and other related information refer to the CVE page(s) listed in the References section.

Bug Fix(es) and Enhancement(s):

For detailed information on changes in this release, see the Red Hat Ceph Storage 4.1 Release Notes available at:

https://access.redhat.com/documentation/en-us/red_hat_ceph_storage/4.1/html/release_notes/index

Solution

Before applying this update, make sure all previously released errata relevant to your system have been applied.

For details on how to apply this update, refer to:

https://access.redhat.com/articles/11258

Affected Products

ProductVersionArch
Red Hat Enterprise Linux for x86_648x86_64
Red Hat Enterprise Linux Server7x86_64
Red Hat Ceph Storage for Power4ppc64le
Red Hat Ceph Storage for Power4ppc64le
Red Hat Ceph Storage OSD4x86_64
Red Hat Ceph Storage OSD4x86_64
Red Hat Ceph Storage OSD for Power4ppc64le
Red Hat Ceph Storage OSD for Power4ppc64le
Red Hat Ceph Storage MON4x86_64
Red Hat Ceph Storage MON4x86_64
Red Hat Ceph Storage MON for Power4ppc64le
Red Hat Ceph Storage MON for Power4ppc64le

Updated Packages

  • nfs-ganesha-vfs-2.8.3-7.el7cp.x86_64.rpm
  • nfs-ganesha-rados-urls-2.8.3-7.el7cp.ppc64le.rpm
  • ceph-mgr-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-ceph-2.8.3-7.el7cp.x86_64.rpm
  • libcephfs2-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • librgw2-14.2.8-59.el8cp.x86_64.rpm
  • ceph-radosgw-14.2.8-50.el7cp.ppc64le.rpm
  • librgw2-14.2.8-50.el7cp.ppc64le.rpm
  • python3-rados-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • python3-cephfs-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • python-cephfs-14.2.8-50.el7cp.ppc64le.rpm
  • python3-saml-1.8.0-3.el8cp.noarch.rpm
  • python3-xmlsec-1.3.3-9.el8cp.x86_64.rpm
  • ceph-selinux-14.2.8-59.el8cp.ppc64le.rpm
  • smartmontools-debuginfo-7.1-1.el8.ppc64le.rpm
  • python3-rgw-14.2.8-59.el8cp.ppc64le.rpm
  • librbd1-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • librgw-devel-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-common-14.2.8-59.el8cp.x86_64.rpm
  • ceph-base-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-mds-14.2.8-50.el7cp.ppc64le.rpm
  • librbd-devel-14.2.8-59.el8cp.x86_64.rpm
  • python3-rbd-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-fuse-14.2.8-59.el8cp.ppc64le.rpm
  • python-isodate-0.5.4-8.el7.src.rpm
  • python3-cephfs-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-rados-urls-2.8.3-7.el7cp.x86_64.rpm
  • ceph-fuse-14.2.8-50.el7cp.x86_64.rpm
  • python3-cephfs-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-mgr-k8sevents-14.2.8-59.el8cp.noarch.rpm
  • rbd-mirror-14.2.8-50.el7cp.x86_64.rpm
  • ceph-mgr-rook-14.2.8-59.el8cp.noarch.rpm
  • librgw2-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • ceph-osd-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-debuginfo-2.8.3-7.el8cp.ppc64le.rpm
  • ceph-debuginfo-14.2.8-50.el7cp.x86_64.rpm
  • ceph-osd-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-mon-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • python3-rgw-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • smartmontools-7.1-1.el8.x86_64.rpm
  • nfs-ganesha-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • python-rados-14.2.8-50.el7cp.x86_64.rpm
  • librbd-devel-14.2.8-50.el7cp.ppc64le.rpm
  • smartmontools-debugsource-7.1-1.el8.x86_64.rpm
  • ceph-mds-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • ceph-ansible-4.0.23-1.el8cp.noarch.rpm
  • python3-isodate-0.5.4-10.el8ost.noarch.rpm
  • ceph-debuginfo-14.2.8-50.el7cp.ppc64le.rpm
  • ceph-mds-14.2.8-59.el8cp.x86_64.rpm
  • ceph-osd-14.2.8-50.el7cp.x86_64.rpm
  • rbd-mirror-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • librados2-14.2.8-50.el7cp.x86_64.rpm
  • nfs-ganesha-proxy-2.8.3-7.el8cp.ppc64le.rpm
  • nfs-ganesha-proxy-debuginfo-2.8.3-7.el8cp.ppc64le.rpm
  • python-isodate-0.5.4-8.el7.noarch.rpm
  • python-rbd-14.2.8-50.el7cp.x86_64.rpm
  • s3cmd-2.0.2-1.el7cp.src.rpm
  • libradosstriper1-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-rgw-2.8.3-7.el7cp.x86_64.rpm
  • python3-cephfs-14.2.8-59.el8cp.ppc64le.rpm
  • libradospp-devel-14.2.8-50.el7cp.x86_64.rpm
  • nfs-ganesha-rados-urls-2.8.3-7.el8cp.ppc64le.rpm
  • libradospp-devel-14.2.8-50.el7cp.ppc64le.rpm
  • rbd-nbd-14.2.8-50.el7cp.x86_64.rpm
  • ceph-radosgw-14.2.8-50.el7cp.x86_64.rpm
  • nfs-ganesha-2.8.3-7.el8cp.x86_64.rpm
  • ceph-mgr-14.2.8-50.el7cp.x86_64.rpm
  • python-rgw-14.2.8-50.el7cp.x86_64.rpm
  • librados2-14.2.8-59.el8cp.ppc64le.rpm
  • python-xmlsec-1.3.3-9.el8cp.src.rpm
  • ceph-base-14.2.8-50.el7cp.ppc64le.rpm
  • python-cephfs-14.2.8-50.el7cp.x86_64.rpm
  • ceph-ansible-4.0.23-1.el7cp.src.rpm
  • ceph-base-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-ceph-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • ceph-fuse-14.2.8-59.el8cp.x86_64.rpm
  • libcephfs-devel-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-rados-grace-2.8.3-7.el7cp.ppc64le.rpm
  • ceph-osd-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-mon-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-osd-14.2.8-50.el7cp.ppc64le.rpm
  • python-defusedxml-0.5.0-1.el7ost.src.rpm
  • python-xmlsec-1.3.3-9.el7cp.src.rpm
  • ceph-grafana-dashboards-14.2.8-59.el8cp.noarch.rpm
  • python-saml-1.8.0-2.el7cp.src.rpm
  • nfs-ganesha-rgw-2.8.3-7.el7cp.ppc64le.rpm
  • libcephfs-devel-14.2.8-50.el7cp.ppc64le.rpm
  • nfs-ganesha-ceph-2.8.3-7.el7cp.ppc64le.rpm
  • python-xmlsec-debugsource-1.3.3-9.el8cp.x86_64.rpm
  • python3-xmlsec-1.3.3-9.el8cp.ppc64le.rpm
  • rbd-fuse-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • python3-xmlsec-debuginfo-1.3.3-9.el8cp.x86_64.rpm
  • ceph-mds-14.2.8-50.el7cp.x86_64.rpm
  • libcephfs2-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-selinux-14.2.8-59.el8cp.x86_64.rpm
  • libcephfs-devel-14.2.8-50.el7cp.x86_64.rpm
  • nfs-ganesha-rados-urls-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • ceph-debugsource-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-2.8.3-7.el7cp.ppc64le.rpm
  • ceph-base-14.2.8-59.el8cp.ppc64le.rpm
  • rbd-mirror-14.2.8-50.el7cp.ppc64le.rpm
  • nfs-ganesha-rgw-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • ceph-14.2.8-59.el8cp.src.rpm
  • s3cmd-2.0.2-1.el8cp.src.rpm
  • ceph-14.2.8-50.el7cp.src.rpm
  • python3-rgw-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • librbd1-14.2.8-50.el7cp.ppc64le.rpm
  • smartmontools-debuginfo-7.1-1.el8.x86_64.rpm
  • ceph-common-14.2.8-50.el7cp.x86_64.rpm
  • python-xmlsec-debugsource-1.3.3-9.el8cp.ppc64le.rpm
  • nfs-ganesha-rgw-2.8.3-7.el8cp.x86_64.rpm
  • python3-rbd-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • python-isodate-0.5.4-10.el8ost.src.rpm
  • librados2-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • libradosstriper1-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • librgw-devel-14.2.8-59.el8cp.x86_64.rpm
  • librbd1-14.2.8-59.el8cp.x86_64.rpm
  • smartmontools-debugsource-7.1-1.el8.ppc64le.rpm
  • ceph-ansible-4.0.23-1.el7cp.noarch.rpm
  • ceph-fuse-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • librados2-14.2.8-50.el7cp.ppc64le.rpm
  • nfs-ganesha-rados-urls-debuginfo-2.8.3-7.el8cp.ppc64le.rpm
  • nfs-ganesha-rgw-debuginfo-2.8.3-7.el8cp.ppc64le.rpm
  • python-rgw-14.2.8-50.el7cp.ppc64le.rpm
  • libcephfs2-14.2.8-50.el7cp.ppc64le.rpm
  • python3-rados-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-rados-grace-debuginfo-2.8.3-7.el8cp.ppc64le.rpm
  • python-xmlsec-1.3.3-9.el7cp.x86_64.rpm
  • nfs-ganesha-rados-grace-2.8.3-7.el8cp.x86_64.rpm
  • nfs-ganesha-selinux-2.8.3-7.el8cp.noarch.rpm
  • nfs-ganesha-debugsource-2.8.3-7.el8cp.x86_64.rpm
  • librbd-devel-14.2.8-50.el7cp.x86_64.rpm
  • ceph-test-14.2.8-50.el7cp.x86_64.rpm
  • nfs-ganesha-2.8.3-7.el7cp.src.rpm
  • rbd-mirror-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-test-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-proxy-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • libradosstriper1-14.2.8-50.el7cp.ppc64le.rpm
  • python-saml-1.8.0-2.el7cp.noarch.rpm
  • nfs-ganesha-vfs-2.8.3-7.el8cp.ppc64le.rpm
  • ceph-debugsource-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mgr-14.2.8-59.el8cp.x86_64.rpm
  • librbd1-14.2.8-50.el7cp.x86_64.rpm
  • ceph-grafana-dashboards-14.2.8-50.el7cp.noarch.rpm
  • librbd1-14.2.8-59.el8cp.ppc64le.rpm
  • librados-devel-14.2.8-50.el7cp.ppc64le.rpm
  • python-xmlsec-1.3.3-9.el7cp.ppc64le.rpm
  • s3cmd-2.0.2-1.el8cp.noarch.rpm
  • smartmontools-7.1-1.el8.src.rpm
  • rbd-fuse-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-osd-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-ceph-2.8.3-7.el8cp.x86_64.rpm
  • nfs-ganesha-2.8.3-7.el7cp.x86_64.rpm
  • nfs-ganesha-proxy-2.8.3-7.el7cp.ppc64le.rpm
  • s3cmd-2.0.2-1.el7cp.noarch.rpm
  • python-xmlsec-debuginfo-1.3.3-9.el7cp.ppc64le.rpm
  • ceph-selinux-14.2.8-50.el7cp.x86_64.rpm
  • ceph-selinux-14.2.8-50.el7cp.ppc64le.rpm
  • python3-rbd-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mds-14.2.8-59.el8cp.ppc64le.rpm
  • libradosstriper1-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-rgw-2.8.3-7.el8cp.ppc64le.rpm
  • nfs-ganesha-rados-grace-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • ceph-mon-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mgr-rook-14.2.8-50.el7cp.noarch.rpm
  • librgw-devel-14.2.8-50.el7cp.ppc64le.rpm
  • ceph-mgr-k8sevents-14.2.8-50.el7cp.noarch.rpm
  • python3-rgw-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mon-14.2.8-50.el7cp.x86_64.rpm
  • librados-devel-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • rbd-nbd-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • ceph-common-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-debuginfo-2.8.3-7.el7cp.x86_64.rpm
  • ceph-radosgw-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • ceph-test-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-fuse-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • libcephfs2-14.2.8-50.el7cp.x86_64.rpm
  • python-rados-14.2.8-50.el7cp.ppc64le.rpm
  • python-xmlsec-debuginfo-1.3.3-9.el7cp.x86_64.rpm
  • ceph-mon-14.2.8-50.el7cp.ppc64le.rpm
  • rbd-mirror-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • librados-devel-14.2.8-50.el7cp.x86_64.rpm
  • python3-ceph-argparse-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-vfs-debuginfo-2.8.3-7.el8cp.ppc64le.rpm
  • ceph-common-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • libcephfs2-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • librados2-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • python3-saml-1.8.0-3.el8cp.src.rpm
  • python3-rados-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-base-14.2.8-50.el7cp.x86_64.rpm
  • ceph-ansible-4.0.23-1.el8cp.src.rpm
  • ceph-common-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-mgr-14.2.8-59.el8cp.ppc64le.rpm
  • librgw-devel-14.2.8-50.el7cp.x86_64.rpm
  • ceph-mgr-dashboard-14.2.8-50.el7cp.noarch.rpm
  • nfs-ganesha-2.8.3-7.el8cp.src.rpm
  • python-rbd-14.2.8-50.el7cp.ppc64le.rpm
  • python3-defusedxml-0.5.0-2.el8ost.noarch.rpm
  • libradosstriper1-14.2.8-50.el7cp.x86_64.rpm
  • ceph-radosgw-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mgr-diskprediction-local-14.2.8-50.el7cp.noarch.rpm
  • libradosstriper1-14.2.8-59.el8cp.ppc64le.rpm
  • python-ceph-argparse-14.2.8-50.el7cp.x86_64.rpm
  • ceph-test-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-rados-grace-2.8.3-7.el8cp.ppc64le.rpm
  • ceph-base-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mgr-diskprediction-local-14.2.8-59.el8cp.noarch.rpm
  • nfs-ganesha-proxy-2.8.3-7.el7cp.x86_64.rpm
  • ceph-common-14.2.8-50.el7cp.ppc64le.rpm
  • nfs-ganesha-debugsource-2.8.3-7.el8cp.ppc64le.rpm
  • nfs-ganesha-rados-grace-2.8.3-7.el7cp.x86_64.rpm
  • librgw2-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • libradospp-devel-14.2.8-59.el8cp.x86_64.rpm
  • python-defusedxml-0.5.0-1.el7ost.noarch.rpm
  • ceph-mgr-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • librados2-14.2.8-59.el8cp.x86_64.rpm
  • ceph-mds-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • librados-devel-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • python-ceph-argparse-14.2.8-50.el7cp.ppc64le.rpm
  • rbd-nbd-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-vfs-2.8.3-7.el7cp.ppc64le.rpm
  • nfs-ganesha-vfs-2.8.3-7.el8cp.x86_64.rpm
  • python3-rbd-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • smartmontools-7.1-1.el8.ppc64le.rpm
  • librbd1-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-debuginfo-2.8.3-7.el7cp.ppc64le.rpm
  • ceph-mon-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • rbd-nbd-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • python3-xmlsec-debuginfo-1.3.3-9.el8cp.ppc64le.rpm
  • nfs-ganesha-rados-urls-2.8.3-7.el8cp.x86_64.rpm
  • ceph-test-debuginfo-14.2.8-59.el8cp.x86_64.rpm
  • nfs-ganesha-ceph-2.8.3-7.el8cp.ppc64le.rpm
  • nfs-ganesha-2.8.3-7.el8cp.ppc64le.rpm
  • libcephfs-devel-14.2.8-59.el8cp.x86_64.rpm
  • libcephfs2-14.2.8-59.el8cp.x86_64.rpm
  • ceph-radosgw-14.2.8-59.el8cp.ppc64le.rpm
  • librbd-devel-14.2.8-59.el8cp.ppc64le.rpm
  • ceph-radosgw-debuginfo-14.2.8-59.el8cp.ppc64le.rpm
  • python3-ceph-argparse-14.2.8-59.el8cp.ppc64le.rpm
  • libradospp-devel-14.2.8-59.el8cp.ppc64le.rpm
  • librgw2-14.2.8-50.el7cp.x86_64.rpm
  • python3-rados-14.2.8-59.el8cp.x86_64.rpm
  • librados-devel-14.2.8-59.el8cp.x86_64.rpm
  • librgw2-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-vfs-debuginfo-2.8.3-7.el8cp.x86_64.rpm
  • ceph-fuse-14.2.8-50.el7cp.ppc64le.rpm
  • librados-devel-14.2.8-59.el8cp.ppc64le.rpm
  • rbd-mirror-14.2.8-59.el8cp.x86_64.rpm
  • rbd-nbd-14.2.8-50.el7cp.ppc64le.rpm
  • ceph-mgr-14.2.8-50.el7cp.ppc64le.rpm
  • ceph-test-14.2.8-50.el7cp.ppc64le.rpm
  • nfs-ganesha-selinux-2.8.3-7.el7cp.noarch.rpm
  • python-defusedxml-0.5.0-2.el8ost.src.rpm
  • ceph-mgr-dashboard-14.2.8-59.el8cp.noarch.rpm
  • nfs-ganesha-proxy-2.8.3-7.el8cp.x86_64.rpm
  • rbd-nbd-14.2.8-59.el8cp.ppc64le.rpm
  • nfs-ganesha-ceph-debuginfo-2.8.3-7.el8cp.ppc64le.rpm

Fixes

CVEs

References


Additional information