RHSA-2023:3623: Moderate: Red Hat Ceph Storage 6.1 security and bug fix update
Red Hat Ceph Storage is a scalable, open, software-defined storage platform that combines the most stable version of the Ceph storage system with a Ceph management platform, deployment utilities, and support services.These new packages include numerous enhancements and bug fixes. Space precludes documenting all of these changes in this advisory. Users are directed to the Red Hat Ceph Storage Release Notes for information on themost significant of these changes:https://access.redhat.com/documentation/en-us/redhatcephstorage/6.1/html/releasenotes/index Security Fix(es): moment: inefficient parsing algorithm resulting in DoS (CVE-2022-31129) angular: XSS vulnerability (CVE-2021-4231) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.All users of Red Hat Ceph Storage are advised to update to these packages that provide numerous enhancements and bug fixes.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:3623?
RHSA-2023:3623 is classified with moderate severity due to various enhancements and bug fixes in the Red Hat Ceph Storage software.
How do I fix RHSA-2023:3623?
To fix RHSA-2023:3623, update the affected packages to the versions specified in the advisory.
Which packages are affected by RHSA-2023:3623?
Affected packages include, but are not limited to, ansible-collection-ansible-posix, ceph, ceph-common, and python3-ceph-common.
What improvements does RHSA-2023:3623 include?
RHSA-2023:3623 includes numerous enhancements and bug fixes that improve the stability and performance of Red Hat Ceph Storage.
Is there a known issue associated with RHSA-2023:3623?
Yes, several bugs have been documented in Bugzilla related to RHSA-2023:3623, which may affect users if not addressed promptly.