All errata/c7/ALT-PU-2016-1943-1
ALT-PU-2016-1943-1

Package update ceph in branch c7

Version0.94.7-alt2.M70C.1
Published2016-09-08
Max severityMEDIUM
Severity:

Closed issues (3)

CVE-2015-5245
MEDIUM4.3

CRLF injection vulnerability in the Ceph Object Gateway (aka radosgw or RGW) in Ceph before 0.94.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted bucket name.

Published: 2015-12-03Modified: 2025-04-12
CVSS 2.0MEDIUM 4.3
CVSS:2.0/AV:N/AC:M/Au:N/C:N/I:P/A:N

Closed bugs (2)

osd не запускается под systemd