UBUNTU-CVE-2022-3854

See a problem?
Source
https://ubuntu.com/security/notices/UBUNTU-CVE-2022-3854
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-3854.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2022-3854
Related
Published
2023-03-06T23:15:00Z
Modified
2023-03-06T23:15:00Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A flaw was found in Ceph, relating to the URL processing on RGW backends. An attacker can exploit the URL processing by providing a null URL to crash the RGW, causing a denial of service.

References

Affected packages

Ubuntu:22.04:LTS / ceph

Package

Name
ceph
Purl
pkg:deb/ubuntu/ceph@17.2.5-0ubuntu0.22.04.3?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
17.2.5-0ubuntu0.22.04.3

Affected versions

16.*

16.2.6-0ubuntu1
16.2.6-0ubuntu2
16.2.6-0ubuntu3
16.2.7-0ubuntu1
16.2.7-0ubuntu4

17.*

17.1.0-0ubuntu1
17.1.0-0ubuntu2
17.1.0-0ubuntu3
17.2.0-0ubuntu0.22.04.1
17.2.0-0ubuntu0.22.04.2
17.2.5-0ubuntu0.22.04.2

Ecosystem specific

{
    "availability": "No subscription required",
    "ubuntu_priority": "medium",
    "binaries": [
        {
            "python3-rgw-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "crimson-osd": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mds": "17.2.5-0ubuntu0.22.04.3",
            "python3-ceph-argparse": "17.2.5-0ubuntu0.22.04.3",
            "rbd-fuse-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "rbd-mirror-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "libsqlite3-mod-ceph-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "libradospp-dev": "17.2.5-0ubuntu0.22.04.3",
            "libradosstriper1-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "rbd-nbd": "17.2.5-0ubuntu0.22.04.3",
            "python3-rgw": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mds-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "rados-objclass-dev": "17.2.5-0ubuntu0.22.04.3",
            "ceph-immutable-object-cache": "17.2.5-0ubuntu0.22.04.3",
            "ceph-fuse-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "rbd-nbd-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "ceph-resource-agents": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-modules-core": "17.2.5-0ubuntu0.22.04.3",
            "librbd1-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "python3-cephfs-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "ceph-common": "17.2.5-0ubuntu0.22.04.3",
            "crimson-osd-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "libcephfs2": "17.2.5-0ubuntu0.22.04.3",
            "ceph-grafana-dashboards": "17.2.5-0ubuntu0.22.04.3",
            "python3-rbd-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "ceph-immutable-object-cache-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-diskprediction-local": "17.2.5-0ubuntu0.22.04.3",
            "libcephfs-java": "17.2.5-0ubuntu0.22.04.3",
            "rbd-fuse": "17.2.5-0ubuntu0.22.04.3",
            "ceph-prometheus-alerts": "17.2.5-0ubuntu0.22.04.3",
            "radosgw": "17.2.5-0ubuntu0.22.04.3",
            "ceph-common-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "libcephfs-jni": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-k8sevents": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-dashboard": "17.2.5-0ubuntu0.22.04.3",
            "radosgw-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "python3-cephfs": "17.2.5-0ubuntu0.22.04.3",
            "ceph-osd": "17.2.5-0ubuntu0.22.04.3",
            "librados-dev": "17.2.5-0ubuntu0.22.04.3",
            "libradosstriper-dev": "17.2.5-0ubuntu0.22.04.3",
            "ceph-fuse": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "librgw2": "17.2.5-0ubuntu0.22.04.3",
            "python3-ceph": "17.2.5-0ubuntu0.22.04.3",
            "librados2": "17.2.5-0ubuntu0.22.04.3",
            "ceph": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mon": "17.2.5-0ubuntu0.22.04.3",
            "librados-dev-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "librados2-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-cephadm": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mon-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "libcephfs2-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "librbd-dev": "17.2.5-0ubuntu0.22.04.3",
            "cephadm": "17.2.5-0ubuntu0.22.04.3",
            "python3-ceph-common": "17.2.5-0ubuntu0.22.04.3",
            "rbd-mirror": "17.2.5-0ubuntu0.22.04.3",
            "ceph-base-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "libcephfs-dev": "17.2.5-0ubuntu0.22.04.3",
            "ceph-osd-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "librbd1": "17.2.5-0ubuntu0.22.04.3",
            "ceph-volume": "17.2.5-0ubuntu0.22.04.3",
            "python3-rados": "17.2.5-0ubuntu0.22.04.3",
            "python3-rbd": "17.2.5-0ubuntu0.22.04.3",
            "python3-rados-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "cephfs-shell": "17.2.5-0ubuntu0.22.04.3",
            "libcephfs-jni-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "librgw2-dbgsym": "17.2.5-0ubuntu0.22.04.3",
            "ceph-base": "17.2.5-0ubuntu0.22.04.3",
            "librgw-dev": "17.2.5-0ubuntu0.22.04.3",
            "ceph-mgr-rook": "17.2.5-0ubuntu0.22.04.3",
            "libradosstriper1": "17.2.5-0ubuntu0.22.04.3",
            "libsqlite3-mod-ceph-dev": "17.2.5-0ubuntu0.22.04.3",
            "libsqlite3-mod-ceph": "17.2.5-0ubuntu0.22.04.3"
        }
    ]
}