Bug 2096336
| Summary: | Include at ODF 4.9 container images (3) the RHEL8 CVE fix on "rsyslog" | ||
|---|---|---|---|
| Product: | [Red Hat Storage] Red Hat OpenShift Data Foundation | Reporter: | Rejy M Cyriac <rcyriac> |
| Component: | distribution | Assignee: | Eran Tamir <etamir> |
| Status: | CLOSED ERRATA | QA Contact: | Petr Balogh <pbalogh> |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | 4.9 | CC: | aeyal, bniver, jopinto, kramdoss, madam, ocs-bugs, odf-bz-bot, sheggodu, sostapov, ykaul |
| Target Milestone: | --- | Keywords: | ZStream |
| Target Release: | ODF 4.9.9 | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2022-06-27 15:26:10 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Rejy M Cyriac
2022-06-13 14:54:24 UTC
OCP 4.9.0-0.nightly-2022-06-14-225707 and ODF 4.9.9-5 (quay.io/rhceph-dev/ocs-registry:4.9.9-5):- On csi ceph container image and rook ceph operator image rsyslog is updated with the CVE fix ceph-csi operator sh-4.4# rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 sh-4.4$ rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 Whereas on noobaa core/multicloud core operator rsyslog is still showing older version i.e."rsyslog-8.1911.0-7.el8_4.2.x86_64" noobaa core sh-4.4$ rpm -qa|grep rsyslog rsyslog-8.1911.0-7.el8_4.2.x86_64 Verified with OCP 4.9.0-0.nightly-2022-06-14-225707 and ODF 4.9.9-6: csi-cephfsplugin-xspsc sh-4.4# rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 sh-4.4# rook-ceph-operator-649ffbcdb-wxcqq sh-4.4$ rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 sh-4.4$ noobaa-core sh-4.4$ rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 rsyslog is updated on all container images. Hence closing the bug Verified with OCP 4.9.0-0.nightly-2022-06-14-225707 and ODF 4.9.9-6: csi-cephfsplugin-xspsc sh-4.4# rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 sh-4.4# rook-ceph-operator-649ffbcdb-wxcqq sh-4.4$ rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 sh-4.4$ noobaa-core sh-4.4$ rpm -qa|grep rsyslog rsyslog-8.2102.0-7.el8_6.1.x86_64 rsyslog is updated on all container images. Hence closing the bug Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat OpenShift Data Foundation 4.9.9 Bug Fix Update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2022:5210 |