[Bug 2166817] Re: [FFE] Update Ceph to 20.2.4 (tentacle) version
Luciano Lo Giudice
2166817 at bugs.launchpad.net
Mon Sep 14 18:08:08 UTC 2026
** Summary changed:
- [SRU] ceph 20.2.4
+ [FFE] Update Ceph to 20.2.4 (tentacle) version
** Description changed:
+ [FFE]
+
+ The release of Ceph Tentacle 20.2.4 [0] was delayed and didn't happen
+ before the feature freeze in Stonking.
+
+ This version includes crucial security fixes that are important to our
+ community and us, so we would like to include it in the Ubuntu Stonking
+ release. The release also includes a new library (libcephfs_proxy) and a
+ daemon (libcephfsd), necessary for the correct working of the
+ orchestrator.
+
+ Our plan is to upload a package based on this PPA [1], corresponding to
+ the following git branch [2] if the FFe is accepted and the package and
+ sources pass their review.
+
+ 0: https://docs.ceph.com/en/latest/releases/tentacle/#notable-changes
+ 1: https://launchpad.net/~lmlogiudice/+archive/ubuntu/ceph-lp2166817-proposed
+ 2: https://git.launchpad.net/~lmlogiudice/ubuntu/+source/ceph/log/?h=stonking-20.2.4
+
[Impact]
This release fixes several security-related bugs. We would like to make sure all of our users have access to these improvements.
The update contains the following package updates:
* ceph 20.2.4 https://docs.ceph.com/en/latest/releases/tentacle/#v20-2-4-tentacle
Notable changes:
* The CVEs 2025-30156, 2026-39944, 2026-50152 and 2026-54330 have been fixed. These are all security-critical and impact any clients that make use of cephx keys.
Packaging notes:
- * When compared to 20.2.4+ds-1 in debian, these easy to fix things were adopted:
- * ceph-fuse, cephfs-mirror, radosgw were missing a manpage.
- * libcephfs-dev now has types.h added.
+ * When compared to 20.2.4+ds-1 in debian, these easy to fix things were adopted:
+ * ceph-fuse, cephfs-mirror, radosgw were missing a manpage.
+ * libcephfs-dev now has types.h added.
[Test Case]
This SRU will run all functional tests with the packages in 'proposed'
for every Ceph charm maintained by Canonical's Ceph team, so that
there's a higher chance of catching bugs associated with any Ceph
component.
The charms for which the functional tests will be run are: ceph-mon,
ceph-osd, ceph-radosgw, ceph-proxy, ceph-nfs, ceph-nvme, ceph-fs and
ceph-rbd-mirror.
The functional test suite includes upgrade testing from the current
stable release to the proposed (in this case, from 20.2.1 to 20.2.4)
[Regression Potential]
ceph is a critical package as it underpins large scale data storage and
integrity checking, and care must be taken to not introduce any data
loss regressions. ceph also is a common backing store for OpenStack
virtual machines through ceph-rbd, and care must be taken to not break
any API or ABI compatibility with current OpenStack releases.
In order to mitigate the regression potential, the results of the
aforementioned tests will be attached to this bug.
--
You received this bug notification because you are a member of Ubuntu
OpenStack, which is subscribed to ceph in Ubuntu.
https://bugs.launchpad.net/bugs/2166817
Title:
[FFE] Update Ceph to 20.2.4 (tentacle) version
Status in ceph package in Ubuntu:
In Progress
Status in ceph source package in Resolute:
In Progress
Status in ceph source package in Stonking:
In Progress
Bug description:
[FFE]
The release of Ceph Tentacle 20.2.4 [0] was delayed and didn't happen
before the feature freeze in Stonking.
This version includes crucial security fixes that are important to our
community and us, so we would like to include it in the Ubuntu
Stonking release. The release also includes a new library
(libcephfs_proxy) and a daemon (libcephfsd), necessary for the correct
working of the orchestrator.
Our plan is to upload a package based on this PPA [1], corresponding
to the following git branch [2] if the FFe is accepted and the package
and sources pass their review.
0: https://docs.ceph.com/en/latest/releases/tentacle/#notable-changes
1: https://launchpad.net/~lmlogiudice/+archive/ubuntu/ceph-lp2166817-proposed
2: https://git.launchpad.net/~lmlogiudice/ubuntu/+source/ceph/log/?h=stonking-20.2.4
[Impact]
This release fixes several security-related bugs. We would like to make sure all of our users have access to these improvements.
The update contains the following package updates:
* ceph 20.2.4 https://docs.ceph.com/en/latest/releases/tentacle/#v20-2-4-tentacle
Notable changes:
* The CVEs 2025-30156, 2026-39944, 2026-50152 and 2026-54330 have been fixed. These are all security-critical and impact any clients that make use of cephx keys.
Packaging notes:
* When compared to 20.2.4+ds-1 in debian, these easy to fix things were adopted:
* ceph-fuse, cephfs-mirror, radosgw were missing a manpage.
* libcephfs-dev now has types.h added.
[Test Case]
This SRU will run all functional tests with the packages in 'proposed'
for every Ceph charm maintained by Canonical's Ceph team, so that
there's a higher chance of catching bugs associated with any Ceph
component.
The charms for which the functional tests will be run are: ceph-mon,
ceph-osd, ceph-radosgw, ceph-proxy, ceph-nfs, ceph-nvme, ceph-fs and
ceph-rbd-mirror.
The functional test suite includes upgrade testing from the current
stable release to the proposed (in this case, from 20.2.1 to 20.2.4)
[Regression Potential]
ceph is a critical package as it underpins large scale data storage
and integrity checking, and care must be taken to not introduce any
data loss regressions. ceph also is a common backing store for
OpenStack virtual machines through ceph-rbd, and care must be taken to
not break any API or ABI compatibility with current OpenStack
releases.
In order to mitigate the regression potential, the results of the
aforementioned tests will be attached to this bug.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ceph/+bug/2166817/+subscriptions
More information about the Ubuntu-openstack-bugs
mailing list