Bug 2070513
| Summary: | Include at ODF 4.9 container images (10) the RHEL8 CVE fix on "openssl" | ||
|---|---|---|---|
| Product: | [Red Hat Storage] Red Hat OpenShift Data Foundation | Reporter: | Rejy M Cyriac <rcyriac> |
| Component: | distribution | Assignee: | Tamil <tmuthami> |
| Status: | CLOSED ERRATA | QA Contact: | Joy John Pinto <jopinto> |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | 4.9 | CC: | aeyal, bniver, jopinto, kramdoss, madam, muagarwa, ocs-bugs, odf-bz-bot, sheggodu, sostapov, ykaul |
| Target Milestone: | --- | Keywords: | ZStream |
| Target Release: | ODF 4.9.6 | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | No Doc Update | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2022-04-25 08:29:08 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Rejy M Cyriac
2022-03-31 10:30:44 UTC
Verified with ocp cluster 4.9.0-0.nightly-2022-04-14-125839, ceph version 16.2.0-152.el8cp and OCS 4.9.6 csi-cephfsplugin-provisioner-7cc4d4599c-6dppw sh-4.4$ rpm -qa|grep openssl openssl-libs-1.1.1k-6.el8_5.x86_64 openssl-1.1.1k-6.el8_5.x86_64 ocs-operator-7ddfb79454-lmp5s sh-4.4$ rpm -qa|grep openssl openssl-libs-1.1.1k-6.el8_5.x86_64 odf-operator-controller-manager-5ddc757945-rkjds sh-4.4$ rpm -qa|grep openssl openssl-libs-1.1.1k-6.el8_5.x86_64 rook-ceph-operator-7ccc855cd4-smbsn sh-4.4$ rpm -qa|grep openssl openssl-1.1.1k-6.el8_5.x86_64 openssl-libs-1.1.1k-6.el8_5.x86_64 noobaa-operator-74b979d79f-twpjp sh-4.4$ rpm -qa|grep openssl openssl-libs-1.1.1k-6.el8_5.x86_64 noobaa-core-0 sh-4.4$ rpm -qa|grep openssl openssl-libs-1.1.1k-6.el8_5.x86_64 openssl-1.1.1k-6.el8_5.x86_64 odf-console-648b684b8d-sfrnr sh-4.4$ rpm -qa|grep openssl openssl-libs-1.1.1k-6.el8_5.x86_64 openssl-1.1.1k-6.el8_5.x86_64 must-gather-w5rvq-helper sh-4.4# rpm -qa|grep openssl openssl-1.1.1k-6.el8_5.x86_64 openssl-libs-1.1.1k-6.el8_5.x86_64 "OpenShift Data Foundation Disaster Recovery Operator" and "Volume Replication Operator" come with openshift DR, which is not part of automation yet. Hence apart from those two containers rest of the pods are verified for fixes. Closing the bug as updated builds with fixes for CVEs are displayed. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat OpenShift Data Foundation 4.9.6 Bug Fix Update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2022:1517 |