Bug 2097471
| Summary: | Include at ODF 4.10 container images (16) the RHEL8 CVE fix on "xz" | ||
|---|---|---|---|
| Product: | [Red Hat Storage] Red Hat OpenShift Data Foundation | Reporter: | Rejy M Cyriac <rcyriac> |
| Component: | distribution | Assignee: | Eran Tamir <etamir> |
| Status: | CLOSED ERRATA | QA Contact: | Petr Balogh <pbalogh> |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | 4.10 | CC: | aeyal, bniver, jopinto, kramdoss, madam, muagarwa, ocs-bugs, odf-bz-bot, sheggodu, sostapov, ykaul |
| Target Milestone: | --- | Keywords: | ZStream |
| Target Release: | ODF 4.10.4 | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | No Doc Update | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2022-06-27 09:15:07 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
Rejy M Cyriac
2022-06-15 18:30:42 UTC
OCP 4.10.17 and ODF 4.10.4(quay.io/rhceph-dev/ocs-registry:4.10.4-1): Verified on the operator images which were installed by default in open-shift storage. odf console sh-4.4$ rpm -qa|grep xz xz-5.2.4-4.el8_6.x86_64 noobaa core sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 noobaa operator sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 sh-4.4$ ceph csi sh-4.4# rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 rook ceph operator sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 ocs-operator sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 OCP 4.10.17 and ODF 4.10.4(quay.io/rhceph-dev/ocs-registry:4.10.4-2): Verified on the operator images which were installed by default in open-shift storage. odf-console sh-4.4$ rpm -qa|grep xz xz-5.2.4-4.el8_6.x86_64 xz-libs-5.2.4-4.el8_6.x86_64 sh-4.4$ noobaa core h-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 sh-4.4$ noobaa operator sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 sh-4.4$ ocs-operator sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 csi-cephfsplugin-5bvtz sh-4.4# rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 sh-4.4# rook-ceph-operator-5d8989f68c-7pl54 sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 must-gather-s5fqp-helper sh-4.4$ rpm -qa|grep xz xz-libs-5.2.4-4.el8_6.x86_64 Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat OpenShift Data Foundation 4.10.4 Bug Fix Update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2022:5196 |