[Bug 2166817] Re: [FFE] Update Ceph to 20.2.4 (tentacle) version

Luciano Lo Giudice 2166817 at bugs.launchpad.net
Mon Sep 14 18:08:08 UTC 2026


** Summary changed:

- [SRU] ceph 20.2.4
+ [FFE] Update Ceph to 20.2.4 (tentacle) version

** Description changed:

+ [FFE]
+ 
+ The release of Ceph Tentacle 20.2.4 [0] was delayed and didn't happen
+ before the feature freeze in Stonking.
+ 
+ This version includes crucial security fixes that are important to our
+ community and us, so we would like to include it in the Ubuntu Stonking
+ release. The release also includes a new library (libcephfs_proxy) and a
+ daemon (libcephfsd), necessary for the correct working of the
+ orchestrator.
+ 
+ Our plan is to upload a package based on this PPA [1], corresponding to
+ the following git branch [2] if the FFe is accepted and the package and
+ sources pass their review.
+ 
+ 0: https://docs.ceph.com/en/latest/releases/tentacle/#notable-changes
+ 1: https://launchpad.net/~lmlogiudice/+archive/ubuntu/ceph-lp2166817-proposed
+ 2: https://git.launchpad.net/~lmlogiudice/ubuntu/+source/ceph/log/?h=stonking-20.2.4
+ 
  [Impact]
  This release fixes several security-related bugs. We would like to make sure all of our users have access to these improvements.
  
  The update contains the following package updates:
     * ceph 20.2.4 https://docs.ceph.com/en/latest/releases/tentacle/#v20-2-4-tentacle
  
  Notable changes:
     * The CVEs 2025-30156, 2026-39944, 2026-50152 and 2026-54330 have been fixed. These are all security-critical and impact any clients that make use of cephx keys.
  
  Packaging notes:
-    * When compared to 20.2.4+ds-1 in debian, these easy to fix things were adopted:
-    * ceph-fuse, cephfs-mirror, radosgw were missing a manpage.
-    * libcephfs-dev now has types.h added.
+    * When compared to 20.2.4+ds-1 in debian, these easy to fix things were adopted:
+    * ceph-fuse, cephfs-mirror, radosgw were missing a manpage.
+    * libcephfs-dev now has types.h added.
  
  [Test Case]
  
  This SRU will run all functional tests with the packages in 'proposed'
  for every Ceph charm maintained by Canonical's Ceph team, so that
  there's a higher chance of catching bugs associated with any Ceph
  component.
  
  The charms for which the functional tests will be run are: ceph-mon,
  ceph-osd, ceph-radosgw, ceph-proxy, ceph-nfs, ceph-nvme, ceph-fs and
  ceph-rbd-mirror.
  
  The functional test suite includes upgrade testing from the current
  stable release to the proposed (in this case, from 20.2.1 to 20.2.4)
  
  [Regression Potential]
  
  ceph is a critical package as it underpins large scale data storage and
  integrity checking, and care must be taken to not introduce any data
  loss regressions. ceph also is a common backing store for OpenStack
  virtual machines through ceph-rbd, and care must be taken to not break
  any API or ABI compatibility with current OpenStack releases.
  
  In order to mitigate the regression potential, the results of the
  aforementioned tests will be attached to this bug.

-- 
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to ceph in Ubuntu.
https://bugs.launchpad.net/bugs/2166817

Title:
  [FFE] Update Ceph to 20.2.4 (tentacle) version

Status in ceph package in Ubuntu:
  In Progress
Status in ceph source package in Resolute:
  In Progress
Status in ceph source package in Stonking:
  In Progress

Bug description:
  [FFE]

  The release of Ceph Tentacle 20.2.4 [0] was delayed and didn't happen
  before the feature freeze in Stonking.

  This version includes crucial security fixes that are important to our
  community and us, so we would like to include it in the Ubuntu
  Stonking release. The release also includes a new library
  (libcephfs_proxy) and a daemon (libcephfsd), necessary for the correct
  working of the orchestrator.

  Our plan is to upload a package based on this PPA [1], corresponding
  to the following git branch [2] if the FFe is accepted and the package
  and sources pass their review.

  0: https://docs.ceph.com/en/latest/releases/tentacle/#notable-changes
  1: https://launchpad.net/~lmlogiudice/+archive/ubuntu/ceph-lp2166817-proposed
  2: https://git.launchpad.net/~lmlogiudice/ubuntu/+source/ceph/log/?h=stonking-20.2.4

  [Impact]
  This release fixes several security-related bugs. We would like to make sure all of our users have access to these improvements.

  The update contains the following package updates:
     * ceph 20.2.4 https://docs.ceph.com/en/latest/releases/tentacle/#v20-2-4-tentacle

  Notable changes:
     * The CVEs 2025-30156, 2026-39944, 2026-50152 and 2026-54330 have been fixed. These are all security-critical and impact any clients that make use of cephx keys.

  Packaging notes:
     * When compared to 20.2.4+ds-1 in debian, these easy to fix things were adopted:
     * ceph-fuse, cephfs-mirror, radosgw were missing a manpage.
     * libcephfs-dev now has types.h added.

  [Test Case]

  This SRU will run all functional tests with the packages in 'proposed'
  for every Ceph charm maintained by Canonical's Ceph team, so that
  there's a higher chance of catching bugs associated with any Ceph
  component.

  The charms for which the functional tests will be run are: ceph-mon,
  ceph-osd, ceph-radosgw, ceph-proxy, ceph-nfs, ceph-nvme, ceph-fs and
  ceph-rbd-mirror.

  The functional test suite includes upgrade testing from the current
  stable release to the proposed (in this case, from 20.2.1 to 20.2.4)

  [Regression Potential]

  ceph is a critical package as it underpins large scale data storage
  and integrity checking, and care must be taken to not introduce any
  data loss regressions. ceph also is a common backing store for
  OpenStack virtual machines through ceph-rbd, and care must be taken to
  not break any API or ABI compatibility with current OpenStack
  releases.

  In order to mitigate the regression potential, the results of the
  aforementioned tests will be attached to this bug.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ceph/+bug/2166817/+subscriptions




More information about the Ubuntu-openstack-bugs mailing list