A flaw was found in Ceph, relating to the URL processing on RGW backends. An attacker can exploit the URL processing by providing a null URL to crash the RGW, causing a denial of service.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "python3-rgw-dbgsym": "17.2.5-0ubuntu0.22.04.3", "crimson-osd": "17.2.5-0ubuntu0.22.04.3", "ceph-mds": "17.2.5-0ubuntu0.22.04.3", "python3-ceph-argparse": "17.2.5-0ubuntu0.22.04.3", "rbd-fuse-dbgsym": "17.2.5-0ubuntu0.22.04.3", "rbd-mirror-dbgsym": "17.2.5-0ubuntu0.22.04.3", "libsqlite3-mod-ceph-dbgsym": "17.2.5-0ubuntu0.22.04.3", "libradospp-dev": "17.2.5-0ubuntu0.22.04.3", "libradosstriper1-dbgsym": "17.2.5-0ubuntu0.22.04.3", "rbd-nbd": "17.2.5-0ubuntu0.22.04.3", "python3-rgw": "17.2.5-0ubuntu0.22.04.3", "ceph-mds-dbgsym": "17.2.5-0ubuntu0.22.04.3", "rados-objclass-dev": "17.2.5-0ubuntu0.22.04.3", "ceph-immutable-object-cache": "17.2.5-0ubuntu0.22.04.3", "ceph-fuse-dbgsym": "17.2.5-0ubuntu0.22.04.3", "rbd-nbd-dbgsym": "17.2.5-0ubuntu0.22.04.3", "ceph-resource-agents": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-modules-core": "17.2.5-0ubuntu0.22.04.3", "librbd1-dbgsym": "17.2.5-0ubuntu0.22.04.3", "python3-cephfs-dbgsym": "17.2.5-0ubuntu0.22.04.3", "ceph-common": "17.2.5-0ubuntu0.22.04.3", "crimson-osd-dbgsym": "17.2.5-0ubuntu0.22.04.3", "libcephfs2": "17.2.5-0ubuntu0.22.04.3", "ceph-grafana-dashboards": "17.2.5-0ubuntu0.22.04.3", "python3-rbd-dbgsym": "17.2.5-0ubuntu0.22.04.3", "ceph-immutable-object-cache-dbgsym": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-diskprediction-local": "17.2.5-0ubuntu0.22.04.3", "libcephfs-java": "17.2.5-0ubuntu0.22.04.3", "rbd-fuse": "17.2.5-0ubuntu0.22.04.3", "ceph-prometheus-alerts": "17.2.5-0ubuntu0.22.04.3", "radosgw": "17.2.5-0ubuntu0.22.04.3", "ceph-common-dbgsym": "17.2.5-0ubuntu0.22.04.3", "libcephfs-jni": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-k8sevents": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-dashboard": "17.2.5-0ubuntu0.22.04.3", "radosgw-dbgsym": "17.2.5-0ubuntu0.22.04.3", "python3-cephfs": "17.2.5-0ubuntu0.22.04.3", "ceph-osd": "17.2.5-0ubuntu0.22.04.3", "librados-dev": "17.2.5-0ubuntu0.22.04.3", "libradosstriper-dev": "17.2.5-0ubuntu0.22.04.3", "ceph-fuse": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-dbgsym": "17.2.5-0ubuntu0.22.04.3", "librgw2": "17.2.5-0ubuntu0.22.04.3", "python3-ceph": "17.2.5-0ubuntu0.22.04.3", "librados2": "17.2.5-0ubuntu0.22.04.3", "ceph": "17.2.5-0ubuntu0.22.04.3", "ceph-mon": "17.2.5-0ubuntu0.22.04.3", "librados-dev-dbgsym": "17.2.5-0ubuntu0.22.04.3", "librados2-dbgsym": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-cephadm": "17.2.5-0ubuntu0.22.04.3", "ceph-mon-dbgsym": "17.2.5-0ubuntu0.22.04.3", "libcephfs2-dbgsym": "17.2.5-0ubuntu0.22.04.3", "librbd-dev": "17.2.5-0ubuntu0.22.04.3", "cephadm": "17.2.5-0ubuntu0.22.04.3", "python3-ceph-common": "17.2.5-0ubuntu0.22.04.3", "rbd-mirror": "17.2.5-0ubuntu0.22.04.3", "ceph-base-dbgsym": "17.2.5-0ubuntu0.22.04.3", "libcephfs-dev": "17.2.5-0ubuntu0.22.04.3", "ceph-osd-dbgsym": "17.2.5-0ubuntu0.22.04.3", "librbd1": "17.2.5-0ubuntu0.22.04.3", "ceph-volume": "17.2.5-0ubuntu0.22.04.3", "python3-rados": "17.2.5-0ubuntu0.22.04.3", "python3-rbd": "17.2.5-0ubuntu0.22.04.3", "python3-rados-dbgsym": "17.2.5-0ubuntu0.22.04.3", "cephfs-shell": "17.2.5-0ubuntu0.22.04.3", "libcephfs-jni-dbgsym": "17.2.5-0ubuntu0.22.04.3", "librgw2-dbgsym": "17.2.5-0ubuntu0.22.04.3", "ceph-base": "17.2.5-0ubuntu0.22.04.3", "librgw-dev": "17.2.5-0ubuntu0.22.04.3", "ceph-mgr-rook": "17.2.5-0ubuntu0.22.04.3", "libradosstriper1": "17.2.5-0ubuntu0.22.04.3", "libsqlite3-mod-ceph-dev": "17.2.5-0ubuntu0.22.04.3", "libsqlite3-mod-ceph": "17.2.5-0ubuntu0.22.04.3" } ] }