[Bug 1861789] Re: [SRU] ceph 14.2.8

James Page james.page at ubuntu.com
Wed Apr 8 15:49:11 UTC 2020


This bug was fixed in the package ceph - 14.2.8-0ubuntu0.19.10.1~cloud0
---------------

 ceph (14.2.8-0ubuntu0.19.10.1~cloud0) bionic-train; urgency=medium
 .
   * New update for the Ubuntu Cloud Archive.
 .
 ceph (14.2.8-0ubuntu0.19.10.1) eoan; urgency=medium
 .
   * New upstream point release (LP: #1861789):
     - d/p/issue{37490,40114,40781}.patch: Drop, included in point release.
     - d/control: Add libcap-ng-dev to BD's.
     - d/control: Add libnl-genl-3-dev to BD's.
     - d/p/bluefs-use-uint64_t-for-len.patch: Fix type mismatch issue on
       32bit architectures.
     - d/p/CVE-2020-1700.patch: Drop, included in release.
     - d/p/32bit-fixes.patch: Misc 32 bit architecture fixes for
       mismatched types.
   * d/control: Add missing Depends on python3-{distutils,routes} to
     ceph-mgr-dashboard package (LP: #1858304).
 .
 ceph (14.2.4-0ubuntu0.19.10.2) eoan-security; urgency=medium
 .
   * SECURITY UPDATE: DoS via RGW Beast front-end unexpected disconnects
     - debian/patches/CVE-2020-1700.patch: avoid leaking connections in
       src/rgw/rgw_asio_frontend.cc.
     - CVE-2020-1700


** Changed in: cloud-archive/train
       Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to Ubuntu Cloud Archive.
https://bugs.launchpad.net/bugs/1861789

Title:
  [SRU] ceph 14.2.8

Status in Ubuntu Cloud Archive:
  Invalid
Status in Ubuntu Cloud Archive train series:
  Fix Released
Status in ceph package in Ubuntu:
  Invalid
Status in ceph source package in Eoan:
  Fix Released

Bug description:
  [Impact]
  This release sports mostly bug-fixes but also two security fixes and we would like to make sure all of our supported customers have access to these improvements.

  The update contains the following package updates:

     * ceph 14.2.8

  [Test Case]
  The following SRU process was followed:

    https://wiki.ubuntu.com/OpenStack/StableReleaseUpdates

  In order to avoid regression of existing consumers, the OpenStack team
  will run their continuous integration test against the packages that
  are in -proposed.  A successful run of all available tests will be
  required before the proposed packages can be let into -updates.

  The OpenStack team will be in charge of attaching the output summary
  of the executed tests. The OpenStack team members will not mark
  ‘verification-done’ until this has happened.

  [Regression Potential]
  In order to mitigate the regression potential, the results of the aforementioned tests are attached to this bug.

To manage notifications about this bug go to:
https://bugs.launchpad.net/cloud-archive/+bug/1861789/+subscriptions



More information about the Ubuntu-openstack-bugs mailing list