Bug 2180732
| Summary: | [4.10 clone] [rook clone] Security and VA issues with ODF operator | ||
|---|---|---|---|
| Product: | [Red Hat Storage] Red Hat OpenShift Data Foundation | Reporter: | Mudit Agarwal <muagarwa> |
| Component: | rook | Assignee: | Subham Rai <srai> |
| Status: | CLOSED ERRATA | QA Contact: | Shivam Durgbuns <sdurgbun> |
| Severity: | high | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 4.10 | CC: | kramdoss, muagarwa, ocs-bugs, odf-bz-bot, srai |
| Target Milestone: | --- | ||
| Target Release: | ODF 4.10.13 | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | No Doc Update | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2023-06-14 21:16:43 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2166417 | ||
| Bug Blocks: | |||
|
Description
Mudit Agarwal
2023-03-22 06:29:12 UTC
Subham, please open a backport PR to release-4.10 for https://github.com/red-hat-storage/rook/pull/447 Already, PR is merged, no rdt required. Verified! Job: https://ocs4-jenkins-csb-odf-qe.apps.ocp-c1.prod.psi.redhat.com/job/qe-deploy-ocs-cluster/24827/ [sdurgbun ~]$ oc version Client Version: 4.9.0-202109101042.p0.git.96e95ce.assembly.stream-96e95ce Server Version: 4.10.59 Kubernetes Version: v1.23.17+16bcd69 [sdurgbun ~]$ oc get clusterserviceversions.operators.coreos.com --namespace openshift-storage NAME DISPLAY VERSION REPLACES PHASE mcg-operator.v4.10.13 NooBaa Operator 4.10.13 mcg-operator.v4.10.12 Succeeded ocs-operator.v4.10.13 OpenShift Container Storage 4.10.13 ocs-operator.v4.10.12 Succeeded odf-csi-addons-operator.v4.10.13 CSI Addons 4.10.13 odf-csi-addons-operator.v4.10.12 Succeeded odf-operator.v4.10.13 OpenShift Data Foundation 4.10.13 odf-operator.v4.10.12 Succeeded [sdurgbun ~]$ oc get pod --namespace openshift-storage rook-ceph-crashcollector-956ba06552ad84e36aea2f95d200428e-rm5kb -oyaml | grep -A 5 "securityContext" securityContext: capabilities: add: - MKNOD privileged: true runAsGroup: 167 -- Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Red Hat OpenShift Data Foundation 4.10.13 Bug Fix Update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2023:3608 |