Oval Definition:oval:org.opensuse.security:def:20155245
Revision Date:2022-09-02Version:1
Title:CVE-2015-5245
Description:

CRLF injection vulnerability in the Ceph Object Gateway (aka radosgw or RGW) in Ceph before 0.94.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted bucket name.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2015-5245
SUSE CVE-2015-5245
SUSE-SU-2016:0806-1
Platform(s):SUSE CaaS Platform 4.5
SUSE Enterprise Storage 7
SUSE Enterprise Storage 7.1
SUSE Linux Enterprise Desktop 15 SP3
SUSE Linux Enterprise Desktop 15 SP4
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise High Performance Computing 15 SP4
SUSE Linux Enterprise Micro 5.0
SUSE Linux Enterprise Micro 5.1
SUSE Linux Enterprise Micro 5.2
SUSE Linux Enterprise Module for Basesystem 15 SP3
SUSE Linux Enterprise Module for Basesystem 15 SP4
SUSE Linux Enterprise Real Time 15 SP2
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP4
SUSE Linux Enterprise Storage 7.1
SUSE Manager Proxy 4.1
SUSE Manager Proxy 4.2
SUSE Manager Proxy 4.3
SUSE Manager Retail Branch Server 4.1
SUSE Manager Retail Branch Server 4.2
SUSE Manager Retail Branch Server 4.3
SUSE Manager Server 4.1
SUSE Manager Server 4.2
SUSE Manager Server 4.3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
  • AND Package Information
  • ceph-common is not affected
  • OR libcephfs2 is not affected
  • OR librados2 is not affected
  • OR libradosstriper1 is not affected
  • OR librbd1 is not affected
  • OR librgw2 is not affected
  • OR python-cephfs is not affected
  • OR python-rados is not affected
  • OR python-rbd is not affected
  • OR python-rgw is not affected
  • Definition Synopsis
  • Release Information
  • SUSE CaaS Platform 4.5 is installed
  • AND ceph is not affected
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • AND
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP3 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP3 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Storage 7.1 is installed
  • OR SUSE Manager Proxy 4.2 is installed
  • OR SUSE Manager Retail Branch Server 4.2 is installed
  • OR SUSE Manager Server 4.2 is installed
  • AND Package Information
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP3 is installed
  • OR SUSE Linux Enterprise Desktop 15 SP4 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP3 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP4 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server 15 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
  • OR SUSE Linux Enterprise Storage 7.1 is installed
  • OR SUSE Manager Proxy 4.2 is installed
  • OR SUSE Manager Proxy 4.3 is installed
  • OR SUSE Manager Retail Branch Server 4.2 is installed
  • OR SUSE Manager Retail Branch Server 4.3 is installed
  • OR SUSE Manager Server 4.2 is installed
  • OR SUSE Manager Server 4.3 is installed
  • AND Package Information
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Enterprise Storage 7.1 is installed
  • AND ceph is not affected
  • OR Package Information
  • SUSE Linux Enterprise Desktop 15 SP3 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP3 is installed
  • OR SUSE Linux Enterprise Real Time 15 SP2 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Storage 7.1 is installed
  • OR SUSE Manager Proxy 4.2 is installed
  • OR SUSE Manager Retail Branch Server 4.2 is installed
  • OR SUSE Manager Server 4.2 is installed
  • AND
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • OR Package Information
  • SUSE Enterprise Storage 7 is installed
  • AND
  • ceph-base is not affected
  • OR ceph-common is not affected
  • OR cephadm is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Real Time 15 SP2 is installed
  • AND ceph is not affected
  • OR Package Information
  • SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • AND
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Real Time 15 SP2 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • OR SUSE Manager Proxy 4.1 is installed
  • OR SUSE Manager Retail Branch Server 4.1 is installed
  • OR SUSE Manager Server 4.1 is installed
  • AND Package Information
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Micro 5.0 is installed
  • AND ceph is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Micro 5.1 is installed
  • AND Package Information
  • librados2 is not affected
  • OR librbd1 is not affected
  • Definition Synopsis
  • SUSE Linux Enterprise Micro 5.2 is installed
  • AND Package Information
  • librados2 is not affected
  • OR librbd1 is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP4 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP4 is installed
  • OR SUSE Linux Enterprise Server 15 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
  • OR SUSE Manager Proxy 4.3 is installed
  • OR SUSE Manager Retail Branch Server 4.3 is installed
  • OR SUSE Manager Server 4.3 is installed
  • AND Package Information
  • ceph-common is not affected
  • OR libcephfs-devel is not affected
  • OR libcephfs2 is not affected
  • OR librados-devel is not affected
  • OR librados2 is not affected
  • OR libradospp-devel is not affected
  • OR librbd-devel is not affected
  • OR librbd1 is not affected
  • OR librgw-devel is not affected
  • OR librgw2 is not affected
  • OR python3-ceph-argparse is not affected
  • OR python3-ceph-common is not affected
  • OR python3-cephfs is not affected
  • OR python3-rados is not affected
  • OR python3-rbd is not affected
  • OR python3-rgw is not affected
  • OR rados-objclass-devel is not affected
  • OR rbd-nbd is not affected
  • BACK