Errata ID | 610 |
---|---|
Date | 2019-03-06 |
Source package | ceph |
Fixed in version | 0.80.7-2+deb8u3 |
Description | This update addresses the following issues: * Authenticated users with read only permissions can steal dm-crypt / LUKS key (CVE-2018-14662) * ListBucket max-keys has no defined limit in the RGW codebase (CVE-2018-16846) |
Additional notes | |
CVE ID | CVE-2018-16846 CVE-2018-14662 |
UCS Bug number | #48852 |