{
  "schema_version": "1.7.0",
  "id": "RHSA-2022:1394",
  "related": [],
  "upstream": [
    "CVE-2021-20288"
  ],
  "published": "2024-09-13T22:49:05Z",
  "modified": "2025-11-22T12:32:23Z",
  "summary": "Red Hat Security Advisory: Red Hat Ceph Storage 3 Security and Bug Fix update",
  "severity": [
    {
      "type": "CVSS_V3",
      "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H"
    }
  ],
  "affected": [
    {
      "package": {
        "name": "ceph",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-base",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-base"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-common",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-common"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-debuginfo",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-debuginfo"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-fuse",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-fuse"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-mds",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-mds"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-mgr",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-mgr"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-mon",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-mon"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-osd",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-osd"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-radosgw",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-radosgw"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-selinux",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-selinux"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "ceph-test",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/ceph-test"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "libcephfs-devel",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/libcephfs-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "libcephfs2",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/libcephfs2"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "librados-devel",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/librados-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "librados2",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/librados2"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "libradosstriper1",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/libradosstriper1"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "librbd-devel",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/librbd-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "librbd1",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/librbd1"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "librgw-devel",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/librgw-devel"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "librgw2",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/librgw2"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-cephfs",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/python-cephfs"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-rados",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/python-rados"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-rbd",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/python-rbd"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "python-rgw",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/python-rgw"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    },
    {
      "package": {
        "name": "rbd-mirror",
        "ecosystem": "Red Hat:ceph_storage:3::el7",
        "purl": "pkg:rpm/redhat/rbd-mirror"
      },
      "ranges": [
        {
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "2:12.2.12-141.el7cp"
            }
          ],
          "type": "ECOSYSTEM"
        }
      ]
    }
  ],
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://access.redhat.com/errata/RHSA-2022:1394"
    },
    {
      "type": "ARTICLE",
      "url": "https://access.redhat.com/security/updates/classification/#important"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1938031"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2068353"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2069491"
    },
    {
      "type": "REPORT",
      "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2071676"
    },
    {
      "type": "ADVISORY",
      "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_1394.json"
    },
    {
      "type": "REPORT",
      "url": "https://access.redhat.com/security/cve/CVE-2021-20288"
    },
    {
      "type": "ADVISORY",
      "url": "https://www.cve.org/CVERecord?id=CVE-2021-20288"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-20288"
    }
  ]
}