The vendor explicitly identifies these products or versions as containing the fix.
- haproxy-0:2.2.19-5.el8cp.src as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy-debugsource-0:2.2.19-5.el8cp.ppc64le as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy-debugsource-0:2.2.19-5.el8cp.s390x as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy-debugsource-0:2.2.19-5.el8cp.x86_64 as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy22-0:2.2.19-5.el8cp.ppc64le as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy22-0:2.2.19-5.el8cp.s390x as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy22-0:2.2.19-5.el8cp.x86_64 as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy22-debuginfo-0:2.2.19-5.el8cp.ppc64le as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy22-debuginfo-0:2.2.19-5.el8cp.s390x as a component of Red Hat Ceph Storage 5.3 Tools
- haproxy22-debuginfo-0:2.2.19-5.el8cp.x86_64 as a component of Red Hat Ceph Storage 5.3 Tools
- ceph-2:17.2.6-148.el9cp.src as a component of Red Hat Ceph Storage 6.1 Tools
- ceph-base-2:17.2.6-148.el9cp.ppc64le as a component of Red Hat Ceph Storage 6.1 Tools
- Summary
- A flaw was found in Ceph. Certain misconfigurations of CORS rules in Ceph could result in a significantly large memory allocation. This issue can lead to RGW crashing and a denial of service from an authenticated user on the network.
- Remediation
- Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/documentation/en-us/red_hat_ceph_storage/5/html-single/upgrade_guide/index#upgrade-a-red-hat-ceph-storage-cluster-using-cephadm For supported configurations, refer to: https://access.redhat.com/articles/1548993
