{"id":"RHSA-2018:2177","summary":"Red Hat Security Advisory: Red Hat Ceph Storage 3.0 security and bug fix update","modified":"2026-03-11T07:12:36.071012Z","published":"2024-09-13T16:51:36Z","upstream":["CVE-2018-10861","CVE-2018-1128","CVE-2018-1129"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2018:2177"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#moderate"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1532645"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1534657"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1549004"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1552202"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1552509"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1566016"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1569694"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1570597"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1575024"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1575866"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1576057"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1576861"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1576908"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1577846"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1578509"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1578572"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1579039"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1581403"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1581573"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1585748"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1593308"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1594974"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1598185"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2018/rhsa-2018_2177.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2018-1128"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2018-1128"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-1128"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2018-1129"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2018-1129"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-1129"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2018-10861"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2018-10861"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-10861"}],"affected":[{"package":{"name":"ceph","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-base","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-base"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-common","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-debuginfo","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-fuse","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-fuse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-mds","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-mds"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-mgr","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-mgr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-mon","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-mon"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-osd","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-osd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-radosgw","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-radosgw"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-selinux","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-selinux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-test","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-test"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"cephmetrics","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/cephmetrics"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.1-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"cephmetrics-ansible","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/cephmetrics-ansible"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.1-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"cephmetrics-collectors","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/cephmetrics-collectors"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.1-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"cephmetrics-grafana-plugins","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/cephmetrics-grafana-plugins"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:1.0.1-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"libcephfs-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/libcephfs-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"libcephfs2","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/libcephfs2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"librados-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librados-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"librados2","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librados2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"libradosstriper1","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/libradosstriper1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"librbd-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librbd-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"librbd1","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librbd1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"librgw-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librgw-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"librgw2","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librgw2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"python-cephfs","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-cephfs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"python-rados","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-rados"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"python-rbd","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-rbd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"python-rgw","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-rgw"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"rbd-mirror","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/rbd-mirror"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.4-30.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"ceph-ansible","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-ansible"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.0.39-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"nfs-ganesha","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/nfs-ganesha"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5.5-6.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"nfs-ganesha-ceph","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/nfs-ganesha-ceph"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5.5-6.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"nfs-ganesha-debuginfo","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/nfs-ganesha-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5.5-6.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}},{"package":{"name":"nfs-ganesha-rgw","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/nfs-ganesha-rgw"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.5.5-6.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2018:2177.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:L/A:L"}]}