Revision Date: | 2022-09-02 | Version: | 1 |
Title: | CVE-2019-19337 |
Description: |
A flaw was found in Red Hat Ceph Storage version 3 in the way the Ceph RADOS Gateway daemon handles S3 requests. An authenticated attacker can abuse this flaw by causing a remote denial of service by sending a specially crafted HTTP Content-Length header to the Ceph RADOS Gateway server.
|
Family: | unix | Class: | vulnerability |
Status: | | Reference(s): | Mitre CVE-2019-19337 SUSE CVE-2019-19337
|
Platform(s): | SUSE Enterprise Storage 6 SUSE Linux Enterprise Desktop 12 SP4 SUSE Linux Enterprise Desktop 15 SUSE Linux Enterprise Desktop 15 SP1 SUSE Linux Enterprise High Performance Computing 12 SP5 SUSE Linux Enterprise High Performance Computing 15 SUSE Linux Enterprise High Performance Computing 15 SP1 SUSE Linux Enterprise Module for Basesystem 15 SUSE Linux Enterprise Module for Basesystem 15 SP1 SUSE Linux Enterprise Server 12 SP4 SUSE Linux Enterprise Server 12 SP5 SUSE Linux Enterprise Server 15 SUSE Linux Enterprise Server 15 SP1 SUSE Linux Enterprise Server for SAP Applications 12 SP2 SUSE Linux Enterprise Server for SAP Applications 12 SP3 SUSE Linux Enterprise Server for SAP Applications 12 SP4 SUSE Linux Enterprise Server for SAP Applications 12 SP5 SUSE Linux Enterprise Server for SAP Applications 15 SUSE Linux Enterprise Server for SAP Applications 15 SP1 SUSE Linux Enterprise Software Development Kit 12 SP4 SUSE Linux Enterprise Software Development Kit 12 SP5 SUSE Linux Enterprise Storage 6 SUSE Manager Proxy 4.0 SUSE Manager Retail Branch Server 4.0 SUSE Manager Server 4.0
| Product(s): | |
Definition Synopsis |
SUSE Linux Enterprise Desktop 12 SP4 is installed AND ceph is not affected
|
Definition Synopsis |
SUSE Linux Enterprise Server 12 SP4 is installed
AND ceph is not affected
|
Definition Synopsis |
SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND ceph is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Module for Basesystem 15 is installed
OR SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND ceph is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
AND ceph is not affected
OR Package Information
SUSE Enterprise Storage 6 is installed
AND
ceph is not affected
OR ceph-base is not affected
OR ceph-common is not affected
OR ceph-fuse is not affected
OR ceph-grafana-dashboards is not affected
OR ceph-mds is not affected
OR ceph-mgr is not affected
OR ceph-mgr-dashboard is not affected
OR ceph-mgr-diskprediction-local is not affected
OR ceph-mgr-rook is not affected
OR ceph-mon is not affected
OR ceph-osd is not affected
OR ceph-prometheus-alerts is not affected
OR ceph-radosgw is not affected
OR cephfs-shell is not affected
OR libcephfs-devel is not affected
OR libcephfs2 is not affected
OR librados-devel is not affected
OR librados2 is not affected
OR libradospp-devel is not affected
OR librbd-devel is not affected
OR librbd1 is not affected
OR librgw-devel is not affected
OR librgw2 is not affected
OR python3-ceph-argparse is not affected
OR python3-cephfs is not affected
OR python3-rados is not affected
OR python3-rbd is not affected
OR python3-rgw is not affected
OR rados-objclass-devel is not affected
OR rbd-fuse is not affected
OR rbd-mirror is not affected
OR rbd-nbd is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Server 12 SP4 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP2 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
AND ceph is not affected
OR Package Information
SUSE Linux Enterprise Server 12 SP5 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP3 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
AND
ceph-common is not affected
OR libcephfs2 is not affected
OR librados2 is not affected
OR libradosstriper1 is not affected
OR librbd1 is not affected
OR librgw2 is not affected
OR python-cephfs is not affected
OR python-rados is not affected
OR python-rbd is not affected
OR python-rgw is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Desktop 15 SP1 is installed
OR SUSE Linux Enterprise High Performance Computing 15 SP1 is installed
OR SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
OR SUSE Linux Enterprise Server 15 SP1 is installed
OR SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
OR SUSE Linux Enterprise Storage 6 is installed
OR SUSE Manager Proxy 4.0 is installed
OR SUSE Manager Retail Branch Server 4.0 is installed
OR SUSE Manager Server 4.0 is installed
AND ceph is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise High Performance Computing 12 SP5 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
AND ceph is not affected
OR Package Information
SUSE Linux Enterprise Server 12 SP5 is installed
AND
ceph-common is not affected
OR libcephfs2 is not affected
OR librados2 is not affected
OR libradosstriper1 is not affected
OR librbd1 is not affected
OR librgw2 is not affected
OR python-cephfs is not affected
OR python-rados is not affected
OR python-rbd is not affected
OR python-rgw is not affected
OR Package Information
SUSE Linux Enterprise Server 12 SP5 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP5 is installed
OR SUSE Linux Enterprise Software Development Kit 12 SP5 is installed
AND
libcephfs-devel is not affected
OR librados-devel is not affected
OR librbd-devel is not affected
|
Definition Synopsis |
Release Information
SUSE Linux Enterprise Desktop 12 SP4 is installed
OR SUSE Linux Enterprise Server 12 SP4 is installed
OR SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
OR SUSE Linux Enterprise Software Development Kit 12 SP4 is installed
AND ceph is not affected
OR Package Information
SUSE Linux Enterprise Server for SAP Applications 12 SP4 is installed
AND
ceph-common is not affected
OR libcephfs2 is not affected
OR librados2 is not affected
OR libradosstriper1 is not affected
OR librbd1 is not affected
OR librgw2 is not affected
OR python-cephfs is not affected
OR python-rados is not affected
OR python-rbd is not affected
OR python-rgw is not affected
|