{"id":"RHSA-2019:4353","summary":"Red Hat Security Advisory: Red Hat Ceph Storage security, bug fix, and enhancement update","modified":"2026-02-21T10:03:52Z","published":"2024-09-13T16:14:55Z","upstream":["CVE-2019-19337"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:4353"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#moderate"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1552210"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1569689"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1603551"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1616159"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1622729"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1623580"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1638904"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1640525"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1644611"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1646456"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1654790"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1664112"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1665877"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1734513"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1744529"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1749097"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1749489"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1749874"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1750115"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1752163"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1753942"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1754432"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1757298"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1757400"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1765230"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1765652"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1769760"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1777050"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1779158"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1780688"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1781170"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2019/rhsa-2019_4353.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2019-19337"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2019-19337"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2019-19337"}],"affected":[{"package":{"name":"ceph","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-base","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-base"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-common","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-common"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-debuginfo","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-fuse","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-fuse"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-mds","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-mds"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-mgr","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-mgr"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-mon","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-mon"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-osd","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-osd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-radosgw","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-radosgw"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-selinux","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-selinux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-test","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-test"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"libcephfs-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/libcephfs-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"libcephfs2","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/libcephfs2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"librados-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librados-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"librados2","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librados2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"libradosstriper1","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/libradosstriper1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"librbd-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librbd-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"librbd1","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librbd1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"librgw-devel","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librgw-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"librgw2","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/librgw2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"python-cephfs","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-cephfs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"python-rados","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-rados"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"python-rbd","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-rbd"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"python-rgw","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/python-rgw"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"rbd-mirror","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/rbd-mirror"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:12.2.12-84.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"ceph-ansible","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/ceph-ansible"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:3.2.38-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"cephmetrics","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/cephmetrics"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.0.9-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}},{"package":{"name":"cephmetrics-ansible","ecosystem":"Red Hat:ceph_storage:3::el7","purl":"pkg:rpm/redhat/cephmetrics-ansible"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:2.0.9-1.el7cp"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2019:4353.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}