drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Denial of Service in Ceph
Name: |
Denial of Service in Ceph |
|
ID: |
USN-4112-1 |
|
Distribution: |
Ubuntu |
|
Plattformen: |
Ubuntu 18.04 LTS, Ubuntu 19.04 |
|
Datum: |
Do, 29. August 2019, 07:36 |
|
Referenzen: |
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10222 |
|
Applikationen: |
Ceph |
|
Originalnachricht |
--===============0042096978107988643== Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="h56sxpGKRmy85csR" Content-Disposition: inline
--h56sxpGKRmy85csR Content-Type: text/plain; charset=us-ascii Content-Disposition: inline
========================================================================== Ubuntu Security Notice USN-4112-1 August 29, 2019
ceph vulnerability ==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 19.04 - Ubuntu 18.04 LTS
Summary:
Ceph could be made to crash if it received specially crafted network traffic.
Software Description: - ceph: distributed storage and file system
Details:
Abhishek Lekshmanan discovered that the RADOS gateway implementation in Ceph did not handle client disconnects properly in some situations. A remote attacker could use this to cause a denial of service.
Update instructions:
The problem can be corrected by updating your system to the following package versions:
Ubuntu 19.04: ceph 13.2.6-0ubuntu0.19.04.3 radosgw 13.2.6-0ubuntu0.19.04.3
Ubuntu 18.04 LTS: ceph 12.2.12-0ubuntu0.18.04.2 radosgw 12.2.12-0ubuntu0.18.04.2
In general, a standard system update will make all the necessary changes.
References: https://usn.ubuntu.com/4112-1 CVE-2019-10222
Package Information: https://launchpad.net/ubuntu/+source/ceph/13.2.6-0ubuntu0.19.04.3 https://launchpad.net/ubuntu/+source/ceph/12.2.12-0ubuntu0.18.04.2
--h56sxpGKRmy85csR Content-Type: application/pgp-signature; name="signature.asc"
-----BEGIN PGP SIGNATURE-----
iQIzBAABCgAdFiEEpgY7tWAjCaQ8jrvULwmejQBegfQFAl1nWioACgkQLwmejQBe gfTGRA/+IabmnS0FrhSNKwyJZd3xJGbtk/K1Kma2LAWGWhBbEcT4Pw7lfB6pb+d0 Kfm/uJfZQWlVMETQVR9Y9sFtq4Rn1Xq3Uc3/zSitpOxIM5UN3DsnPdLrsI7PkuI9 2sPo+OYEY64l9Z1jWCVX/homozzp6WOze3K9ZRW8gw1/1BegIz+t4PtpwVv31o+H +GMgKvoGW8xmrbNdEFI1J1/CqtT3mJttnSdrYjfgmZq6U82sjiGBT08nMk/JaF/G XwatlRVGDf4BVlGtmqH1kbFECUhqnWIgjL4tpOp5av8trV9KpzaCeGiGgmi0prbw m4ZY7Jt3Y318+kX3gViJOt2Ef1Osbw3nvMxPrzCC+wueVlSeJVkgIOXCg1VOy3uW BQl4MrxQQ7gmmvaSP+Bq+4ZaD+JumnZn7HDE4uLJg/WOWmq1jAjl8LBngxaG92FP Nn/ucroTovtoCXTOcHm6lvh+pI6sK/IU40HszlDP3mPyKM6DszxzLb8FosGf9692 9huftl3Y84vyK8oLDqifp8bxUKsFggNhv0duEdqTj+jVC2vCefSv2qKiso9hppR7 +ajDIWhQd+tMg0cwYX3QMvsji9sNVO96zNA10NFZVnZnlTbUKNsztd3frO3SilLp /f3i61cvYY+7Xsc/8nAtYArVU+zevIKZLWqfFSEXCaEDZG2AKw4= =JqYc -----END PGP SIGNATURE-----
--h56sxpGKRmy85csR--
--===============0042096978107988643== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline
-- ubuntu-security-announce mailing list ubuntu-security-announce@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce
|
|
|
|