Red Hat Bugzilla – Bug 1460331
CVE-2017-7519 ceph: libradosstriper processes arbitrary printf placeholders in user input
Last modified: 2017-06-14 07:38:19 EDT
A format string flaw was found in the way libradosstriper parses input from user. It was found user can crash application or service using libradosstriper library. upstream tracker: http://tracker.ceph.com/issues/20240
Acknowledgments: Name: Stan K
Created ceph tracking bugs for this issue: Affects: fedora-all [bug 1460367]
Statement: This issue did not affect the versions of ceph as shipped with Red Hat Ceph Storage 1.3 and 2 as they did not ship libradosstriper.