Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2017-7519 (GCVE-0-2017-7519)
Vulnerability from cvelistv5
Published
2018-07-27 14:00
Modified
2024-08-05 16:04
Severity ?
VLAI Severity ?
EPSS score ?
CWE
Summary
In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.
References
► | URL | Tags | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-05T16:04:11.820Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "name": "99075", "tags": [ "vdb-entry", "x_refsource_BID", "x_transferred" ], "url": "http://www.securityfocus.com/bid/99075" }, { "name": "DSA-4339", "tags": [ "vendor-advisory", "x_refsource_DEBIAN", "x_transferred" ], "url": "https://www.debian.org/security/2018/dsa-4339" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "ceph", "vendor": "[UNKNOWN]", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "datePublic": "2017-06-09T00:00:00", "descriptions": [ { "lang": "en", "value": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library." } ], "metrics": [ { "cvssV3_0": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "LOW", "baseScore": 2.3, "baseSeverity": "LOW", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "HIGH", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "version": "3.0" } } ], "problemTypes": [ { "descriptions": [ { "cweId": "CWE-134", "description": "CWE-134", "lang": "en", "type": "CWE" } ] } ], "providerMetadata": { "dateUpdated": "2018-11-14T10:57:02", "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749", "shortName": "redhat" }, "references": [ { "name": "99075", "tags": [ "vdb-entry", "x_refsource_BID" ], "url": "http://www.securityfocus.com/bid/99075" }, { "name": "DSA-4339", "tags": [ "vendor-advisory", "x_refsource_DEBIAN" ], "url": "https://www.debian.org/security/2018/dsa-4339" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" } ] } }, "cveMetadata": { "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749", "assignerShortName": "redhat", "cveId": "CVE-2017-7519", "datePublished": "2018-07-27T14:00:00", "dateReserved": "2017-04-05T00:00:00", "dateUpdated": "2024-08-05T16:04:11.820Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1", "vulnerability-lookup:meta": { "nvd": "{\"cve\":{\"id\":\"CVE-2017-7519\",\"sourceIdentifier\":\"secalert@redhat.com\",\"published\":\"2018-07-27T14:29:00.253\",\"lastModified\":\"2024-11-21T03:32:03.837\",\"vulnStatus\":\"Modified\",\"cveTags\":[],\"descriptions\":[{\"lang\":\"en\",\"value\":\"In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.\"},{\"lang\":\"es\",\"value\":\"En Ceph, se ha encontrado un defecto de cadena de formato en la forma en la que libradosstriper analiza las entradas del usuario. Un usuario puede cerrar de manera inesperada una aplicaci\u00f3n o servicio usando la librer\u00eda libradosstriper.\"}],\"metrics\":{\"cvssMetricV30\":[{\"source\":\"secalert@redhat.com\",\"type\":\"Secondary\",\"cvssData\":{\"version\":\"3.0\",\"vectorString\":\"CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L\",\"baseScore\":2.3,\"baseSeverity\":\"LOW\",\"attackVector\":\"LOCAL\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"HIGH\",\"userInteraction\":\"NONE\",\"scope\":\"UNCHANGED\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"LOW\"},\"exploitabilityScore\":0.8,\"impactScore\":1.4},{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"3.0\",\"vectorString\":\"CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H\",\"baseScore\":4.4,\"baseSeverity\":\"MEDIUM\",\"attackVector\":\"LOCAL\",\"attackComplexity\":\"LOW\",\"privilegesRequired\":\"HIGH\",\"userInteraction\":\"NONE\",\"scope\":\"UNCHANGED\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"HIGH\"},\"exploitabilityScore\":0.8,\"impactScore\":3.6}],\"cvssMetricV2\":[{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"cvssData\":{\"version\":\"2.0\",\"vectorString\":\"AV:L/AC:L/Au:N/C:N/I:N/A:P\",\"baseScore\":2.1,\"accessVector\":\"LOCAL\",\"accessComplexity\":\"LOW\",\"authentication\":\"NONE\",\"confidentialityImpact\":\"NONE\",\"integrityImpact\":\"NONE\",\"availabilityImpact\":\"PARTIAL\"},\"baseSeverity\":\"LOW\",\"exploitabilityScore\":3.9,\"impactScore\":2.9,\"acInsufInfo\":false,\"obtainAllPrivilege\":false,\"obtainUserPrivilege\":false,\"obtainOtherPrivilege\":false,\"userInteractionRequired\":false}]},\"weaknesses\":[{\"source\":\"secalert@redhat.com\",\"type\":\"Secondary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-134\"}]},{\"source\":\"nvd@nist.gov\",\"type\":\"Primary\",\"description\":[{\"lang\":\"en\",\"value\":\"CWE-134\"}]}],\"configurations\":[{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:a:ceph:ceph:-:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"46F488D9-BD97-4155-B172-096DBC508395\"}]}]},{\"nodes\":[{\"operator\":\"OR\",\"negate\":false,\"cpeMatch\":[{\"vulnerable\":true,\"criteria\":\"cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*\",\"matchCriteriaId\":\"07B237A9-69A3-4A9C-9DA0-4E06BD37AE73\"}]}]}],\"references\":[{\"url\":\"http://www.securityfocus.com/bid/99075\",\"source\":\"secalert@redhat.com\",\"tags\":[\"Third Party Advisory\",\"VDB Entry\"]},{\"url\":\"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519\",\"source\":\"secalert@redhat.com\",\"tags\":[\"Exploit\",\"Issue Tracking\",\"Vendor Advisory\"]},{\"url\":\"https://www.debian.org/security/2018/dsa-4339\",\"source\":\"secalert@redhat.com\",\"tags\":[\"Third Party Advisory\"]},{\"url\":\"http://www.securityfocus.com/bid/99075\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\",\"VDB Entry\"]},{\"url\":\"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Exploit\",\"Issue Tracking\",\"Vendor Advisory\"]},{\"url\":\"https://www.debian.org/security/2018/dsa-4339\",\"source\":\"af854a3a-2127-422b-91ae-364da2661108\",\"tags\":[\"Third Party Advisory\"]}]}}" } }
gsd-2017-7519
Vulnerability from gsd
Modified
2023-12-13 01:21
Details
In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.
Aliases
Aliases
{ "GSD": { "alias": "CVE-2017-7519", "description": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.", "id": "GSD-2017-7519", "references": [ "https://www.suse.com/security/cve/CVE-2017-7519.html", "https://www.debian.org/security/2018/dsa-4339" ] }, "gsd": { "metadata": { "exploitCode": "unknown", "remediation": "unknown", "reportConfidence": "confirmed", "type": "vulnerability" }, "osvSchema": { "aliases": [ "CVE-2017-7519" ], "details": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.", "id": "GSD-2017-7519", "modified": "2023-12-13T01:21:06.314647Z", "schema_version": "1.4.0" } }, "namespaces": { "cve.org": { "CVE_data_meta": { "ASSIGNER": "secalert@redhat.com", "ID": "CVE-2017-7519", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "ceph", "version": { "version_data": [ { "version_affected": "=", "version_value": "n/a" } ] } } ] }, "vendor_name": "[UNKNOWN]" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library." } ] }, "impact": { "cvss": [ { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "LOW", "baseScore": 2.3, "baseSeverity": "LOW", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "HIGH", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "version": "3.0" } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "cweId": "CWE-134", "lang": "eng", "value": "CWE-134" } ] } ] }, "references": { "reference_data": [ { "name": "http://www.securityfocus.com/bid/99075", "refsource": "MISC", "url": "http://www.securityfocus.com/bid/99075" }, { "name": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519", "refsource": "MISC", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" }, { "name": "https://www.debian.org/security/2018/dsa-4339", "refsource": "MISC", "url": "https://www.debian.org/security/2018/dsa-4339" } ] } }, "nvd.nist.gov": { "configurations": { "CVE_data_version": "4.0", "nodes": [ { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:a:ceph:ceph:-:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" }, { "children": [], "cpe_match": [ { "cpe23Uri": "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*", "cpe_name": [], "vulnerable": true } ], "operator": "OR" } ] }, "cve": { "CVE_data_meta": { "ASSIGNER": "secalert@redhat.com", "ID": "CVE-2017-7519" }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "en", "value": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "en", "value": "CWE-134" } ] } ] }, "references": { "reference_data": [ { "name": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519", "refsource": "CONFIRM", "tags": [ "Exploit", "Issue Tracking", "Vendor Advisory" ], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" }, { "name": "99075", "refsource": "BID", "tags": [ "Third Party Advisory", "VDB Entry" ], "url": "http://www.securityfocus.com/bid/99075" }, { "name": "DSA-4339", "refsource": "DEBIAN", "tags": [ "Third Party Advisory" ], "url": "https://www.debian.org/security/2018/dsa-4339" } ] } }, "impact": { "baseMetricV2": { "acInsufInfo": false, "cvssV2": { "accessComplexity": "LOW", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.1, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:L/AC:L/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 3.9, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "severity": "LOW", "userInteractionRequired": false }, "baseMetricV3": { "cvssV3": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 4.4, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "HIGH", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.0" }, "exploitabilityScore": 0.8, "impactScore": 3.6 } }, "lastModifiedDate": "2019-10-09T23:29Z", "publishedDate": "2018-07-27T14:29Z" } } }
suse-su-2017:3171-1
Vulnerability from csaf_suse
Published
2017-12-01 10:31
Modified
2017-12-01 10:31
Summary
Security update for ceph
Notes
Title of the patch
Security update for ceph
Description of the patch
This update provides Ceph 10.2.10, which brings fixes and enhancements:
This security issue was fixed:
- CVE-2017-7519: libradosstriper processes arbitrary printf placeholders in user input. (bsc#1043767)
- CVE-2016-9579: Do not abort RGW server when accepting a CORS request with short origin. (bsc#1014986)
These non-security issues were fixed:
- common: Add rdbmap to ceph-common. (bsc#1029482)
- tools/rados: Default to include clone objects when executing 'cache-flush-evict-all'. (bsc#1003891)
- mon, ceph-disk: Add lockbox permissions to bootstrap-osd. (bsc#1008435)
- ceph_volume_client: Fix _recover_auth_meta() method. (bsc#1008501)
- systemd/ceph-disk: Reduce ceph-disk flock contention. (bsc#1012100)
- doc: Add verbiage to rbdmap manpage. (bsc#1015748)
- doc: Add Install section to systemd rbdmap.service file. (bsc#1015748)
- ceph systemd dependencies are wrong (bsc#1042973)
- ceph-disk omits '--runtime' when enabling ceph-osd units (was: ERROR: unable to open OSD superblock) (bsc#1051598)
- SES4: 23 osd's are down after patching node. (bsc#1056536)
- Invalid error code returned by MDS is causing a kernel client WARNING (bsc#1028109)
- systemctl stop rbdmap unmaps ALL rbds and not just the ones in /etc/ceph/rbdmap (bsc#1024691)
- documentation: man crushtool does not cover the '--show-mappings' parameter (bsc#1033786)
- swift | This returns with HTTP/1.1 401 Unauthorized (bsc#1015371)
- OSDs fail to start after server reboot (bsc#1025643)
- 'ceph-deploy mds destroy' not implemented (bsc#970642)
Patchnames
SUSE-Storage-3-2017-1975
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for ceph", "title": "Title of the patch" }, { "category": "description", "text": "\nThis update provides Ceph 10.2.10, which brings fixes and enhancements:\n\nThis security issue was fixed:\n\n- CVE-2017-7519: libradosstriper processes arbitrary printf placeholders in user input. (bsc#1043767)\n- CVE-2016-9579: Do not abort RGW server when accepting a CORS request with short origin. (bsc#1014986)\n\nThese non-security issues were fixed:\n\n- common: Add rdbmap to ceph-common. (bsc#1029482)\n- tools/rados: Default to include clone objects when executing \u0027cache-flush-evict-all\u0027. (bsc#1003891)\n- mon, ceph-disk: Add lockbox permissions to bootstrap-osd. (bsc#1008435)\n- ceph_volume_client: Fix _recover_auth_meta() method. (bsc#1008501)\n- systemd/ceph-disk: Reduce ceph-disk flock contention. (bsc#1012100)\n- doc: Add verbiage to rbdmap manpage. (bsc#1015748)\n- doc: Add Install section to systemd rbdmap.service file. (bsc#1015748)\n- ceph systemd dependencies are wrong (bsc#1042973)\n- ceph-disk omits \u0027--runtime\u0027 when enabling ceph-osd units (was: ERROR: unable to open OSD superblock) (bsc#1051598)\n- SES4: 23 osd\u0027s are down after patching node. (bsc#1056536)\n- Invalid error code returned by MDS is causing a kernel client WARNING (bsc#1028109)\n- systemctl stop rbdmap unmaps ALL rbds and not just the ones in /etc/ceph/rbdmap (bsc#1024691)\n- documentation: man crushtool does not cover the \u0027--show-mappings\u0027 parameter (bsc#1033786)\n- swift | This returns with HTTP/1.1 401 Unauthorized (bsc#1015371)\n- OSDs fail to start after server reboot (bsc#1025643)\n- \u0027ceph-deploy mds destroy\u0027 not implemented (bsc#970642)\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-Storage-3-2017-1975", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2017_3171-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2017:3171-1", "url": "https://www.suse.com/support/update/announcement/2017/suse-su-20173171-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2017:3171-1", "url": "https://lists.suse.com/pipermail/sle-security-updates/2017-December/003463.html" }, { "category": "self", "summary": "SUSE Bug 1003891", "url": "https://bugzilla.suse.com/1003891" }, { "category": "self", "summary": "SUSE Bug 1008435", "url": "https://bugzilla.suse.com/1008435" }, { "category": "self", "summary": "SUSE Bug 1008501", "url": "https://bugzilla.suse.com/1008501" }, { "category": "self", "summary": "SUSE Bug 1012100", "url": "https://bugzilla.suse.com/1012100" }, { "category": "self", "summary": "SUSE Bug 1014986", "url": "https://bugzilla.suse.com/1014986" }, { "category": "self", "summary": "SUSE Bug 1015371", "url": "https://bugzilla.suse.com/1015371" }, { "category": "self", "summary": "SUSE Bug 1015748", "url": "https://bugzilla.suse.com/1015748" }, { "category": "self", "summary": "SUSE Bug 1024691", "url": "https://bugzilla.suse.com/1024691" }, { "category": "self", "summary": "SUSE Bug 1025643", "url": "https://bugzilla.suse.com/1025643" }, { "category": "self", "summary": "SUSE Bug 1028109", "url": "https://bugzilla.suse.com/1028109" }, { "category": "self", "summary": "SUSE Bug 1029482", "url": "https://bugzilla.suse.com/1029482" }, { "category": "self", "summary": "SUSE Bug 1033786", "url": "https://bugzilla.suse.com/1033786" }, { "category": "self", "summary": "SUSE Bug 1042973", "url": "https://bugzilla.suse.com/1042973" }, { "category": "self", "summary": "SUSE Bug 1043767", "url": "https://bugzilla.suse.com/1043767" }, { "category": "self", "summary": "SUSE Bug 1051598", "url": "https://bugzilla.suse.com/1051598" }, { "category": "self", "summary": "SUSE Bug 1056536", "url": "https://bugzilla.suse.com/1056536" }, { "category": "self", "summary": "SUSE Bug 970642", "url": "https://bugzilla.suse.com/970642" }, { "category": "self", "summary": "SUSE CVE CVE-2016-9579 page", "url": "https://www.suse.com/security/cve/CVE-2016-9579/" }, { "category": "self", "summary": "SUSE CVE CVE-2017-7519 page", "url": "https://www.suse.com/security/cve/CVE-2017-7519/" } ], "title": "Security update for ceph", "tracking": { "current_release_date": "2017-12-01T10:31:17Z", "generator": { "date": "2017-12-01T10:31:17Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2017:3171-1", "initial_release_date": "2017-12-01T10:31:17Z", "revision_history": [ { "date": "2017-12-01T10:31:17Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "product": { "name": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "product_id": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64" } }, { "category": "product_version", "name": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } }, { "category": "product_version", "name": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product": { "name": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "product_id": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "product": { "name": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "product_id": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64" } }, { "category": "product_version", "name": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } }, { "category": "product_version", "name": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product": { "name": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "product_id": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Enterprise Storage 3", "product": { "name": "SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3", "product_identification_helper": { "cpe": "cpe:/o:suse:ses:3" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64" }, "product_reference": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64" }, "product_reference": "ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64" }, "product_reference": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 3" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64 as component of SUSE Enterprise Storage 3", "product_id": "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" }, "product_reference": "rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 3" } ] }, "vulnerabilities": [ { "cve": "CVE-2016-9579", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2016-9579" } ], "notes": [ { "category": "general", "text": "A flaw was found in the way Ceph Object Gateway would process cross-origin HTTP requests if the CORS policy was set to allow origin on a bucket. A remote unauthenticated attacker could use this flaw to cause denial of service by sending a specially-crafted cross-origin HTTP request. Ceph branches 1.3.x and 2.x are affected.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2016-9579", "url": "https://www.suse.com/security/cve/CVE-2016-9579" }, { "category": "external", "summary": "SUSE Bug 1014986 for CVE-2016-9579", "url": "https://bugzilla.suse.com/1014986" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", "version": "3.0" }, "products": [ "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2017-12-01T10:31:17Z", "details": "low" } ], "title": "CVE-2016-9579" }, { "cve": "CVE-2017-7519", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2017-7519" } ], "notes": [ { "category": "general", "text": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2017-7519", "url": "https://www.suse.com/security/cve/CVE-2017-7519" }, { "category": "external", "summary": "SUSE Bug 1043767 for CVE-2017-7519", "url": "https://bugzilla.suse.com/1043767" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.0" }, "products": [ "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-base-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-common-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mds-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-mon-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-osd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:ceph-radosgw-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.aarch64", "SUSE Enterprise Storage 3:ceph-test-10.2.10+git.1510313171.6d5f0aeac1-13.7.2.x86_64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libcephfs1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librados2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:libradosstriper1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librbd1-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:librgw2-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-ceph-compat-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-cephfs-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rados-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:python-rbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-fuse-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-mirror-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.aarch64", "SUSE Enterprise Storage 3:rbd-nbd-10.2.10+git.1510313171.6d5f0aeac1-13.7.3.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2017-12-01T10:31:17Z", "details": "moderate" } ], "title": "CVE-2017-7519" } ] }
suse-su-2017:2922-1
Vulnerability from csaf_suse
Published
2017-11-02 12:09
Modified
2017-11-02 12:09
Summary
Security update for ceph
Notes
Title of the patch
Security update for ceph
Description of the patch
CEPH was updated to version 10.2.10, which brings several fixes and enhancements.
Upstream 10.2.10 release summary can be found at: https://ceph.com/releases/v10-2-10-jewel-released/
Security issues fixed:
- CVE-2017-7519: libradosstriper processed arbitrary printf placeholders in user input (bsc#1043767)
Non-security issues fixed:
- Add explicit Before=ceph.target to systemd service file. (bsc#1042973)
- ceph-disk omits '--runtime' when enabling ceph-osd@$ID.service units. (bsc#1051598, bsc#1056536)
- Make it possible to customize ceph-disk's timeout and set default to 3h. (bsc#1051432)
- Move ceph-disk from ceph-common to ceph-base.
Patchnames
SUSE-Storage-4-2017-1805
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "important" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "Security update for ceph", "title": "Title of the patch" }, { "category": "description", "text": "CEPH was updated to version 10.2.10, which brings several fixes and enhancements.\n\nUpstream 10.2.10 release summary can be found at: https://ceph.com/releases/v10-2-10-jewel-released/\n\nSecurity issues fixed:\n\n- CVE-2017-7519: libradosstriper processed arbitrary printf placeholders in user input (bsc#1043767)\n\nNon-security issues fixed:\n\n- Add explicit Before=ceph.target to systemd service file. (bsc#1042973)\n- ceph-disk omits \u0027--runtime\u0027 when enabling ceph-osd@$ID.service units. (bsc#1051598, bsc#1056536)\n- Make it possible to customize ceph-disk\u0027s timeout and set default to 3h. (bsc#1051432)\n- Move ceph-disk from ceph-common to ceph-base.\n", "title": "Description of the patch" }, { "category": "details", "text": "SUSE-Storage-4-2017-1805", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/suse-su-2017_2922-1.json" }, { "category": "self", "summary": "URL for SUSE-SU-2017:2922-1", "url": "https://www.suse.com/support/update/announcement/2017/suse-su-20172922-1/" }, { "category": "self", "summary": "E-Mail link for SUSE-SU-2017:2922-1", "url": "https://lists.suse.com/pipermail/sle-security-updates/2017-November/003369.html" }, { "category": "self", "summary": "SUSE Bug 1042973", "url": "https://bugzilla.suse.com/1042973" }, { "category": "self", "summary": "SUSE Bug 1043767", "url": "https://bugzilla.suse.com/1043767" }, { "category": "self", "summary": "SUSE Bug 1051432", "url": "https://bugzilla.suse.com/1051432" }, { "category": "self", "summary": "SUSE Bug 1051598", "url": "https://bugzilla.suse.com/1051598" }, { "category": "self", "summary": "SUSE Bug 1056536", "url": "https://bugzilla.suse.com/1056536" }, { "category": "self", "summary": "SUSE CVE CVE-2017-7519 page", "url": "https://www.suse.com/security/cve/CVE-2017-7519/" } ], "title": "Security update for ceph", "tracking": { "current_release_date": "2017-11-02T12:09:07Z", "generator": { "date": "2017-11-02T12:09:07Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "SUSE-SU-2017:2922-1", "initial_release_date": "2017-11-02T12:09:07Z", "revision_history": [ { "date": "2017-11-02T12:09:07Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } }, { "category": "product_version", "name": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product": { "name": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "product_id": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } }, { "category": "product_version", "name": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product": { "name": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "product_id": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "SUSE Enterprise Storage 4", "product": { "name": "SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4", "product_identification_helper": { "cpe": "cpe:/o:suse:ses:4" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64" }, "product_reference": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "relates_to_product_reference": "SUSE Enterprise Storage 4" }, { "category": "default_component_of", "full_product_name": { "name": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64 as component of SUSE Enterprise Storage 4", "product_id": "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" }, "product_reference": "rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "relates_to_product_reference": "SUSE Enterprise Storage 4" } ] }, "vulnerabilities": [ { "cve": "CVE-2017-7519", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2017-7519" } ], "notes": [ { "category": "general", "text": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.", "title": "CVE description" } ], "product_status": { "recommended": [ "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2017-7519", "url": "https://www.suse.com/security/cve/CVE-2017-7519" }, { "category": "external", "summary": "SUSE Bug 1043767 for CVE-2017-7519", "url": "https://bugzilla.suse.com/1043767" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 4.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L", "version": "3.0" }, "products": [ "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-base-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-common-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-mds-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-mon-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-osd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-radosgw-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:ceph-test-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:libcephfs1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librados2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:libradosstriper1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librbd1-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:librgw2-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-ceph-compat-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-cephfs-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-rados-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:python-rbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-fuse-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-mirror-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64", "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.aarch64", "SUSE Enterprise Storage 4:rbd-nbd-10.2.10+git.1507616349.698469bd8d-12.6.1.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2017-11-02T12:09:07Z", "details": "moderate" } ], "title": "CVE-2017-7519" } ] }
ghsa-ghfm-8rwr-p3hr
Vulnerability from github
Published
2022-05-13 01:36
Modified
2022-05-13 01:36
Severity ?
VLAI Severity ?
Details
In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.
{ "affected": [], "aliases": [ "CVE-2017-7519" ], "database_specific": { "cwe_ids": [ "CWE-134" ], "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2018-07-27T14:29:00Z", "severity": "MODERATE" }, "details": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.", "id": "GHSA-ghfm-8rwr-p3hr", "modified": "2022-05-13T01:36:19Z", "published": "2022-05-13T01:36:19Z", "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-7519" }, { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" }, { "type": "WEB", "url": "https://www.debian.org/security/2018/dsa-4339" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/99075" } ], "schema_version": "1.4.0", "severity": [ { "score": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "type": "CVSS_V3" } ] }
fkie_cve-2017-7519
Vulnerability from fkie_nvd
Published
2018-07-27 14:29
Modified
2024-11-21 03:32
Severity ?
2.3 (Low) - CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
4.4 (Medium) - CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
4.4 (Medium) - CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Summary
In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library.
References
▶ | URL | Tags | |
---|---|---|---|
secalert@redhat.com | http://www.securityfocus.com/bid/99075 | Third Party Advisory, VDB Entry | |
secalert@redhat.com | https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519 | Exploit, Issue Tracking, Vendor Advisory | |
secalert@redhat.com | https://www.debian.org/security/2018/dsa-4339 | Third Party Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | http://www.securityfocus.com/bid/99075 | Third Party Advisory, VDB Entry | |
af854a3a-2127-422b-91ae-364da2661108 | https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519 | Exploit, Issue Tracking, Vendor Advisory | |
af854a3a-2127-422b-91ae-364da2661108 | https://www.debian.org/security/2018/dsa-4339 | Third Party Advisory |
Impacted products
Vendor | Product | Version | |
---|---|---|---|
ceph | ceph | - | |
debian | debian_linux | 10.0 |
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:ceph:ceph:-:*:*:*:*:*:*:*", "matchCriteriaId": "46F488D9-BD97-4155-B172-096DBC508395", "vulnerable": true } ], "negate": false, "operator": "OR" } ] }, { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*", "matchCriteriaId": "07B237A9-69A3-4A9C-9DA0-4E06BD37AE73", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "In Ceph, a format string flaw was found in the way libradosstriper parses input from user. A user could crash an application or service using the libradosstriper library." }, { "lang": "es", "value": "En Ceph, se ha encontrado un defecto de cadena de formato en la forma en la que libradosstriper analiza las entradas del usuario. Un usuario puede cerrar de manera inesperada una aplicaci\u00f3n o servicio usando la librer\u00eda libradosstriper." } ], "id": "CVE-2017-7519", "lastModified": "2024-11-21T03:32:03.837", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "LOW", "cvssData": { "accessComplexity": "LOW", "accessVector": "LOCAL", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 2.1, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:L/AC:L/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 3.9, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false } ], "cvssMetricV30": [ { "cvssData": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "LOW", "baseScore": 2.3, "baseSeverity": "LOW", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "HIGH", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "version": "3.0" }, "exploitabilityScore": 0.8, "impactScore": 1.4, "source": "secalert@redhat.com", "type": "Secondary" }, { "cvssData": { "attackComplexity": "LOW", "attackVector": "LOCAL", "availabilityImpact": "HIGH", "baseScore": 4.4, "baseSeverity": "MEDIUM", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "HIGH", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H", "version": "3.0" }, "exploitabilityScore": 0.8, "impactScore": 3.6, "source": "nvd@nist.gov", "type": "Primary" } ] }, "published": "2018-07-27T14:29:00.253", "references": [ { "source": "secalert@redhat.com", "tags": [ "Third Party Advisory", "VDB Entry" ], "url": "http://www.securityfocus.com/bid/99075" }, { "source": "secalert@redhat.com", "tags": [ "Exploit", "Issue Tracking", "Vendor Advisory" ], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" }, { "source": "secalert@redhat.com", "tags": [ "Third Party Advisory" ], "url": "https://www.debian.org/security/2018/dsa-4339" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory", "VDB Entry" ], "url": "http://www.securityfocus.com/bid/99075" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Exploit", "Issue Tracking", "Vendor Advisory" ], "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Third Party Advisory" ], "url": "https://www.debian.org/security/2018/dsa-4339" } ], "sourceIdentifier": "secalert@redhat.com", "vulnStatus": "Modified", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-134" } ], "source": "secalert@redhat.com", "type": "Secondary" }, { "description": [ { "lang": "en", "value": "CWE-134" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…