Vulnerability Name:

CVE-2018-16846 (CCN-155602)

Assigned:2018-09-11
Published:2019-01-15
Updated:2022-04-19
Summary:It was found in Ceph versions before 13.2.4 that authenticated ceph RGW users can cause a denial of service against OMAPs holding bucket indices.
CVSS v3 Severity:6.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
5.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
4.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L)
3.8 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:4.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
4.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-770
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2018-16846

Source: SUSE
Type: Mailing List, Third Party Advisory
openSUSE-SU-2019:1284

Source: REDHAT
Type: Third Party Advisory
RHSA-2019:2538

Source: REDHAT
Type: Third Party Advisory
RHSA-2019:2541

Source: CCN
Type: Red Hat Bugzilla – Bug 1644461
(CVE-2018-16846) - CVE-2018-16846 ceph: ListBucket max-keys has no defined limit in the RGW codebase

Source: CONFIRM
Type: Issue Tracking, Patch, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16846

Source: CCN
Type: Ceph Web site
13.2.4 Mimic released

Source: MISC
Type: Vendor Advisory
https://ceph.com/releases/13-2-4-mimic-released/

Source: XF
Type: UNKNOWN
ceph-cve201816846-dos(155602)

Source: MLIST
Type: Mailing List, Third Party Advisory
[debian-lts-announce] 20190301 [SECURITY] [DLA 1696-1] ceph security update

Source: MLIST
Type: Mailing List, Third Party Advisory
[debian-lts-announce] 20210810 [SECURITY] [DLA 2735-1] ceph security update

Source: UBUNTU
Type: Third Party Advisory
USN-4035-1

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2018-16846

Vulnerable Configuration:Configuration 1:
  • cpe:/a:redhat:ceph:*:*:*:*:*:*:*:* (Version < 13.2.4)

  • Configuration 2:
  • cpe:/o:debian:debian_linux:8.0:*:*:*:*:*:*:*
  • OR cpe:/o:debian:debian_linux:9.0:*:*:*:*:*:*:*

  • Configuration 3:
  • cpe:/o:opensuse:leap:15.0:*:*:*:*:*:*:*

  • Configuration 4:
  • cpe:/a:redhat:ceph_storage:2.0:*:*:*:*:*:*:*
  • OR cpe:/a:redhat:ceph_storage:3.0:*:*:*:*:*:*:*
  • OR cpe:/o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*

  • Configuration 5:
  • cpe:/o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:linuxfoundation:ceph:13.2.3:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201816846
    V
    CVE-2018-16846
    2022-09-02
    oval:org.opensuse.security:def:6354
    P
    Security update for raptor (Moderate)
    2022-08-25
    oval:org.opensuse.security:def:3358
    P
    rtkit-0.11_git201205151338-8.14 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3030
    P
    ceph-common-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3370
    P
    squidGuard-1.4-30.6.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3450
    P
    ceph-common-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:1458
    P
    Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP3) (Important)
    2022-03-29
    oval:org.opensuse.security:def:6362
    P
    Security update for flac (Moderate)
    2022-03-14
    oval:org.opensuse.security:def:10444
    P
    Security update for MozillaFirefox (Important) (in QA)
    2022-01-14
    oval:org.opensuse.security:def:55320
    P
    Security update for apache2 (Important)
    2022-01-12
    oval:org.opensuse.security:def:10429
    P
    Security update for net-snmp (Important)
    2022-01-11
    oval:org.opensuse.security:def:10382
    P
    Security update for postgresql10 (Important)
    2021-12-14
    oval:org.opensuse.security:def:8677
    P
    Security update for python-Pygments (Important)
    2021-12-01
    oval:org.opensuse.security:def:60427
    P
    Security update for speex (Moderate)
    2021-12-01
    oval:org.opensuse.security:def:23995
    P
    Security update for postgresql, postgresql13, postgresql14 (Important)
    2021-11-20
    oval:org.opensuse.security:def:57127
    P
    Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:8664
    P
    Security update for containerd, docker, runc (Important)
    2021-10-25
    oval:org.opensuse.security:def:8655
    P
    Security update for libqt5-qtbase (Important)
    2021-09-30
    oval:org.opensuse.security:def:61415
    P
    chrony-3.2-9.6.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61569
    P
    libserf-1-1-1.3.9-2.31 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61606
    P
    minicom-2.7.1-1.19 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61531
    P
    libksba-devel-1.3.5-2.14 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61445
    P
    gc-devel-7.6.4-1.16 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61662
    P
    sysstat-12.0.2-3.6.12 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:61612
    P
    openvpn-2.4.3-5.3.19 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:10336
    P
    Security update for ffmpeg (Important)
    2021-09-02
    oval:org.opensuse.security:def:6477
    P
    Security update for java-1_8_0-openjdk (Important)
    2021-08-20
    oval:org.opensuse.security:def:10314
    P
    Security update for MozillaFirefox (Important)
    2021-08-17
    oval:org.opensuse.security:def:47222
    P
    colord-gtk-lang-0.1.26-6.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48111
    P
    libfreebl3-3.45-58.31.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14849
    P
    ceph-common-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47273
    P
    gpgme-1.5.1-1.11 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48304
    P
    screen-4.0.4-23.3.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47969
    P
    ceph-common-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13771
    P
    apache2-mod_jk-1.2.40-5.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47975
    P
    coreutils-8.25-13.7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47976
    P
    cpio-2.11-36.3.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:13793
    P
    cron-4.2-58.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47990
    P
    dbus-1-glib-0.100.2-3.58 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:63483
    P
    libgd3-32bit-2.2.5-9.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:63351
    P
    libtcmu2-1.5.2-3.3.1 on GA media (Moderate)
    2021-08-10
    oval:org.opensuse.security:def:62030
    P
    autoyast2-4.3.77-1.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62203
    P
    libprocps7-3.3.15-7.16.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62747
    P
    gd-2.2.5-9.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62256
    P
    libzypp-17.25.8-3.33.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:63028
    P
    openldap2-devel-32bit-2.4.46-9.51.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62810
    P
    libraptor-devel-2.0.15-9.3.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62384
    P
    docker-19.03.15_ce-6.46.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:55228
    P
    Security update for djvulibre (Important)
    2021-08-05
    oval:org.opensuse.security:def:57053
    P
    Security update for linuxptp (Important)
    2021-07-21
    oval:org.opensuse.security:def:10306
    P
    Security update for curl (Moderate)
    2021-07-21
    oval:org.opensuse.security:def:8364
    P
    Security update for crmsh (Moderate)
    2021-07-21
    oval:org.opensuse.security:def:44380
    P
    Security update for MozillaFirefox (Important)
    2021-07-16
    oval:org.opensuse.security:def:8386
    P
    Security update for the Linux Kernel (Important)
    2021-07-15
    oval:org.opensuse.security:def:8613
    P
    Security update for openexr (Important)
    2021-06-24
    oval:org.opensuse.security:def:23613
    P
    Security update for cryptctl (Important)
    2021-06-23
    oval:org.opensuse.security:def:23926
    P
    Security update for apache2 (Important)
    2021-06-17
    oval:org.opensuse.security:def:23922
    P
    Security update for freeradius-server (Moderate)
    2021-06-11
    oval:org.opensuse.security:def:61144
    P
    cups-2.2.7-1.24 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12556
    P
    libical1-1.0.1-16.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46764
    P
    libpython3_4m1_0-3.4.1-12.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13507
    P
    cifs-utils-6.4-6.4 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12578
    P
    libmpfr4-3.1.2-7.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:61227
    P
    libdcerpc-binding0-4.7.6+git.54.6e3276c9872-2.47 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:11287
    P
    dhcp-4.2.6-7.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12624
    P
    libsoup-2_4-1-2.62.2-5.7.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12548
    P
    libgcrypt20-1.6.1-16.61.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46519
    P
    libspice-client-glib-2_0-8-0.25-3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48436
    P
    groff-1.22.2-5.287 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:61347
    P
    python2-requests-2.18.4-1.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46490
    P
    libjson-c2-0.11-2.15 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12671
    P
    ntp-4.2.8p12-64.8.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48676
    P
    gnome-shell-calendar-3.10.4-22.13 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46431
    P
    gpg2-2.0.24-1.4 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46584
    P
    sysvinit-tools-2.88+-94.13 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13529
    P
    ecryptfs-utils-103-5.35 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48528
    P
    libnghttp2-14-1.7.1-1.84 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46372
    P
    MozillaFirefox-31.1.0esr-1.20 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12686
    P
    perl-Archive-Zip-1.34-3.3.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48890
    P
    ImageMagick-6.8.8.1-71.85.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:46713
    P
    libXxf86vm1-1.1.3-3.54 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12780
    P
    ctdb-4.6.5+git.27.6afd48b1083-2.11 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:11265
    P
    argyllcms-1.6.3-1.179 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:12705
    P
    python3-3.4.6-25.16.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:9337
    P
    Security update for libwebp (Critical)
    2021-06-04
    oval:org.opensuse.security:def:8588
    P
    Security update for polkit (Important)
    2021-06-03
    oval:org.opensuse.security:def:49146
    P
    Security update for slurm_20_11 (Important)
    2021-05-27
    oval:org.opensuse.security:def:6675
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15) (Important)
    2021-05-25
    oval:org.opensuse.security:def:45868
    P
    Security update for the Linux Kernel (Important)
    2021-05-12
    oval:org.opensuse.security:def:8356
    P
    Security update for drbd-utils (Low)
    2021-05-11
    oval:org.opensuse.security:def:9315
    P
    Security update for cifs-utils (Important)
    2021-04-30
    oval:org.opensuse.security:def:23890
    P
    Security update for gdm (Important)
    2021-04-28
    oval:org.opensuse.security:def:23548
    P
    Security update for xorg-x11-server (Important)
    2021-04-14
    oval:org.opensuse.security:def:38103
    P
    Security update for clamav (Important)
    2021-04-14
    oval:org.opensuse.security:def:45661
    P
    Security update for clamav (Important)
    2021-04-14
    oval:org.opensuse.security:def:6662
    P
    Security update for the Linux Kernel (Live Patch 23 for SLE 15) (Important)
    2021-04-07
    oval:org.opensuse.security:def:23541
    P
    Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:24044
    P
    Security update for tomcat (Important)
    2021-03-30
    oval:org.opensuse.security:def:49147
    P
    Security update for slurm_20_11 and pdsh (Important)
    2021-03-12
    oval:org.opensuse.security:def:23755
    P
    Security update for openldap2 (Important)
    2021-03-03
    oval:org.opensuse.security:def:51741
    P
    Security update for grub2 (Important)
    2021-03-02
    oval:org.opensuse.security:def:23748
    P
    Security update for java-1_8_0-openjdk (Moderate)
    2021-02-19
    oval:org.opensuse.security:def:45867
    P
    Security update for the Linux Kernel (Important)
    2021-02-16
    oval:org.opensuse.security:def:23739
    P
    Security update for python (Important)
    2021-02-11
    oval:org.opensuse.security:def:45584
    P
    Security update for MozillaFirefox (Important)
    2021-01-29
    oval:org.opensuse.security:def:45071
    P
    Security update for openldap2 (Moderate)
    2021-01-14
    oval:org.opensuse.security:def:8646
    P
    Security update for dovecot23 (Important)
    2021-01-05
    oval:org.opensuse.security:def:6644
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15) (Important)
    2020-12-07
    oval:org.opensuse.security:def:55777
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP2) (Important)
    2020-12-07
    oval:org.opensuse.security:def:8494
    P
    Security update for gcc10, nvptx-tools (Moderate)
    2020-12-04
    oval:org.opensuse.security:def:48974
    P
    argyllcms-1.6.3-3.3 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12869
    P
    dpdk-18.11.2-1.59 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12843
    P
    ceph-common-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12950
    P
    libXfixes3-32bit-5.0.1-7.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12805
    P
    libpacemaker3-1.1.21+20190809.bf34b44fa-1.17 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63587
    P
    libopencv3_3-3.3.1-4.5 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12856
    P
    cups-1.7.5-20.23.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:3965
    P
    libcephfs-devel-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13044
    P
    libpcsclite1-1.8.10-7.6.3 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2096
    P
    squid-4.0.23-3.47 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61692
    P
    amavisd-new-2.11.1-6.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12847
    P
    colord-gtk-lang-0.1.26-6.3 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12969
    P
    libasan2-32bit-5.3.1+r233831-12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62664
    P
    libcolord-gtk-devel-0.1.26-1.48 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13133
    P
    pam_yubico-2.26-1.25 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12820
    P
    apache-commons-beanutils-1.9.2-3.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13069
    P
    libsoup-2_4-1-2.62.2-5.7.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13120
    P
    ntp-4.2.8p13-85.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62478
    P
    libvpx-devel-1.6.1-4.16 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61938
    P
    pam_u2f-1.0.8-3.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13111
    P
    mailman-2.1.17-3.8.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12842
    P
    bzip2-1.0.6-30.8.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61733
    P
    ecryptfs-utils-111-2.31 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:16801
    P
    libcephfs-devel-12.2.12+git.1568024032.02236657ca-2.39.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62615
    P
    accountsservice-0.6.55-3.14 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62676
    P
    libjbig2-32bit-2.1-1.31 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12888
    P
    gdk-pixbuf-lang-2.34.0-19.17.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62577
    P
    libquicktime-1.2.4cvs20150223-4.42 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12812
    P
    ImageMagick-config-6-SUSE-6.8.8.1-71.126.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62485
    P
    perl-MIME-Charset-1.012.2-1.24 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62714
    P
    ppp-2.4.7-5.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62006
    P
    xen-libs-4.13.1_02-1.2 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:12935
    P
    lcms2-2.7-9.7.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62007
    P
    xorg-x11-7.6_1-1.22 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49036
    P
    libsilc-1_1-2-1.1.10-24.128 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2633
    P
    Security update for tiff (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2710
    P
    Security update for zypper, libzypp and libsolv (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:55120
    P
    Security update for python-setuptools (Important)
    2020-12-02
    oval:org.opensuse.security:def:2639
    P
    Security update for cups (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2651
    P
    Security update for MozillaFirefox (Important)
    2020-12-02
    oval:org.opensuse.security:def:2665
    P
    Security update for accountsservice (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2680
    P
    Security update for samba (Important)
    2020-12-02
    oval:org.opensuse.security:def:2629
    P
    Security update for conmon, fuse-overlayfs, libcontainers-common, podman (Moderate)
    2020-12-02
    oval:org.opensuse.security:def:2671
    P
    Security update for cups (Important)
    2020-12-02
    oval:org.opensuse.security:def:2704
    P
    Security update for gvfs (Important)
    2020-12-02
    oval:org.opensuse.security:def:2718
    P
    Security update for wavpack (Low)
    2020-12-02
    oval:org.opensuse.security:def:2720
    P
    Security update for webkit2gtk3 (Important)
    2020-12-02
    oval:org.opensuse.security:def:53989
    P
    kbd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23502
    P
    Security update for libunwind (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49741
    P
    kernel-docs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:22726
    P
    Security update for the Linux Kernel (Live Patch 32 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:44937
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:17692
    P
    Security update for krb5 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36702
    P
    libvirt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8479
    P
    openssh on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54669
    P
    rhythmbox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6586
    P
    dnsmasq on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18385
    P
    Security update for tiff (Important)
    2020-12-01
    oval:org.opensuse.security:def:50392
    P
    Recommended update for sles12sp3-docker-image, sles12sp4-image, system-user-root (Important)
    2020-12-01
    oval:org.opensuse.security:def:19057
    P
    Security update for cups (Important)
    2020-12-01
    oval:org.opensuse.security:def:17977
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:45743
    P
    Security update for xmltooling (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55432
    P
    Security update for pidgin (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:63830
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:24596
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:53990
    P
    kernel-default on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60612
    P
    Security update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:50136
    P
    NetworkManager-lang on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44886
    P
    Security update for LibVNCServer (Critical)
    2020-12-01
    oval:org.opensuse.security:def:45023
    P
    Security update for dovecot22 (Important)
    2020-12-01
    oval:org.opensuse.security:def:44949
    P
    Security update for webkit2gtk3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:43996
    P
    Security update for libsoup (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54827
    P
    libQt5WebKit5 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6511
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50361
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:22874
    P
    Security update for java-1_8_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:22298
    P
    Security update for git (Important)
    2020-12-01
    oval:org.opensuse.security:def:17876
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:45455
    P
    Security update for xmltooling (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44831
    P
    Security update for postgresql96 (Important)
    2020-12-01
    oval:org.opensuse.security:def:55394
    P
    sysvinit-tools on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60926
    P
    Security update for clamav (Important)
    2020-12-01
    oval:org.opensuse.security:def:22765
    P
    Security update for the Linux Kernel (Live Patch 27 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:46012
    P
    Security update for cups (Important)
    2020-12-01
    oval:org.opensuse.security:def:44950
    P
    Security update for shibboleth-sp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36838
    P
    gdk-pixbuf-loader-rsvg on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55099
    P
    emacs on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6611
    P
    ghostscript on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50296
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:22844
    P
    Security update for grub2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:50465
    P
    Security update for python-numpy (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18840
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:59990
    P
    Security update for java-1_7_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:49165
    P
    libdmx-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18062
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:45790
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:55513
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:54253
    P
    libarchive13 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54012
    P
    libXxf86vm1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60733
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50226
    P
    gegl-0_3 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45983
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:17935
    P
    Security update for wireshark (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44100
    P
    Security update for pam_radius (Important)
    2020-12-01
    oval:org.opensuse.security:def:54933
    P
    libssh2-1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:22832
    P
    Security update for bind (Important)
    2020-12-01
    oval:org.opensuse.security:def:23512
    P
    Security update for ghostscript (Important)
    2020-12-01
    oval:org.opensuse.security:def:59991
    P
    Security update for LibVNCServer (Critical)
    2020-12-01
    oval:org.opensuse.security:def:22345
    P
    Security update for apache2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:17907
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:46085
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6653
    P
    libFLAC++6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55696
    P
    Security update for java-1_7_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:7313
    P
    apache-commons-daemon on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25105
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:54254
    P
    libaugeas0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6384
    P
    libhogweed2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24114
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:45926
    P
    Security update for java-1_8_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:46075
    P
    Security update for dpdk (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45433
    P
    Security update for dovecot22 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44961
    P
    Security update for mailman (Important)
    2020-12-01
    oval:org.opensuse.security:def:36939
    P
    libpulse-mainloop-glib0-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8513
    P
    rpcbind on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55384
    P
    shim on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:50479
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:23263
    P
    Security update for quagga (Important)
    2020-12-01
    oval:org.opensuse.security:def:49292
    P
    patch on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18119
    P
    Security update for librsvg (Low)
    2020-12-01
    oval:org.opensuse.security:def:45951
    P
    Security update for libxslt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18053
    P
    Security update for MozillaFirefox, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:55658
    P
    Security update for libxml2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54152
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23802
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:38145
    P
    ceph-common on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45434
    P
    Security update for postgresql96 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44265
    P
    Security update for squid (Important)
    2020-12-01
    oval:org.opensuse.security:def:37086
    P
    coreutils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:19083
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:60955
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:60013
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:22444
    P
    Security update for bluez (Important)
    2020-12-01
    oval:org.opensuse.security:def:18186
    P
    Security update for libxml2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:46292
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:55584
    P
    Security update for gnutls (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:63780
    P
    Security update for ibus (Important)
    2020-12-01
    oval:org.opensuse.security:def:36606
    P
    gnome-keyring on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54276
    P
    libjpeg-turbo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6430
    P
    libsilc-1_1-2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24257
    P
    Security update for java-1_7_0-openjdk (Important)
    2020-12-01
    oval:org.opensuse.security:def:18176
    P
    Security update for sssd (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:22290
    P
    Security update for cups (Important)
    2020-12-01
    oval:org.opensuse.security:def:17700
    P
    Security update for openssl (Important)
    2020-12-01
    oval:org.opensuse.security:def:36996
    P
    perl-YAML-LibYAML on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10538
    P
    libreoffice-sdk on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:55492
    P
    Security update for libksba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23878
    P
    Security update for java-1_8_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:24564
    P
    Security update for ghostscript (Important)
    2020-12-01
    oval:org.opensuse.security:def:50533
    P
    Security update for ceph (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60956
    P
    Security update for python-PyYAML (Important)
    2020-12-01
    oval:org.opensuse.security:def:23316
    P
    Security update for mariadb (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49497
    P
    MozillaFirefox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18150
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:18085
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37421
    P
    dstat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:36607
    P
    gnome-shell on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54390
    P
    telepathy-gabble on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18154
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45446
    P
    Security update for shadow (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10463
    P
    libQt5Bootstrap-devel-static on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37246
    P
    libqt4-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24435
    P
    Security update for bluez (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60173
    P
    Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:22508
    P
    Security update for dovecot22 (Important)
    2020-12-01
    oval:org.opensuse.security:def:18296
    P
    Security update for libxml2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37393
    P
    busybox on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10627
    P
    apache2-mod_perl-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:56789
    P
    Security update for krb5 (Important)
    2020-12-01
    oval:org.opensuse.security:def:63865
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:54416
    P
    ImageMagick on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24306
    P
    Security update for procps (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18142
    P
    Security update for postgresql96 (Important)
    2020-12-01
    oval:org.opensuse.security:def:49132
    P
    less on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18814
    P
    Security update for postgresql96 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:45709
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:17734
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:45253
    P
    Security update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:44572
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:10563
    P
    libxcb-composite0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24397
    P
    Security update for openldap2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:60978
    P
    Security update for java-1_8_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:23432
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:49643
    P
    imlib2-loaders on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:22601
    P
    Security update for qemu (Important)
    2020-12-01
    oval:org.opensuse.security:def:37354
    P
    wpa_supplicant on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10614
    P
    yast2-core-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:37465
    P
    ibus-chewing on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:7335
    P
    ceph-common on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:43984
    P
    Security update for spice (Important)
    2020-12-01
    oval:org.opensuse.security:def:36618
    P
    hyper-v on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:8432
    P
    libpoppler-glib8 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54563
    P
    libjson-c2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49101
    P
    giflib-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18419
    P
    Security update for mercurial (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23255
    P
    Security update for bluez (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17943
    P
    Security update for libxml2 (Important)
    2020-12-01
    oval:org.opensuse.security:def:45559
    P
    Security update for sysstat (Low)
    2020-12-01
    oval:org.opensuse.security:def:44455
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:37305
    P
    pigz on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:24385
    P
    Security update for kernel-source (Important)
    2020-12-01
    oval:org.opensuse.security:def:63725
    P
    Security update for elfutils (Low)
    2020-12-01
    oval:org.opensuse.security:def:25073
    P
    Security update for sqlite3 (Important)
    2020-12-01
    oval:org.opensuse.security:def:51803
    P
    Security update for ceph (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:23804
    P
    Security update for libsolv, libzypp, zypper (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:22548
    P
    Security update for systemd (Important)
    2020-12-01
    oval:org.opensuse.security:def:49898
    P
    python3-paramiko on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18328
    P
    Security update for libXfont (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:10605
    P
    vte2-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44966
    P
    Security update for the Linux Kernel (Live Patch 29 for SLE 12 SP2) (Important)
    2020-12-01
    oval:org.opensuse.security:def:56863
    P
    Security update for ceph (Important)
    2020-12-01
    oval:org.opensuse.security:def:43985
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:54654
    P
    perl-YAML-LibYAML on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:6492
    P
    python-imaging on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:54835
    P
    libXinerama1 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:18397
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49203
    P
    libnm0 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:17819
    P
    Security update for php7 (Important)
    2020-12-01
    oval:org.opensuse.security:def:45374
    P
    Security update for libsndfile (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:44761
    P
    Security update for openssl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:63685
    P
    Security update for systemd (Important)
    2020-12-01
    oval:org.opensuse.security:def:79761
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:88843
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:124996
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:126040
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:85337
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:79497
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:126419
    P
    Security update for ceph (Important)
    2019-02-26
    oval:org.opensuse.security:def:87071
    P
    Security update for ceph (Important)
    2019-02-26
    oval:com.ubuntu.xenial:def:2018168460000000
    V
    CVE-2018-16846 on Ubuntu 16.04 LTS (xenial) - medium.
    2019-01-15
    oval:com.ubuntu.bionic:def:201816846000
    V
    CVE-2018-16846 on Ubuntu 18.04 LTS (bionic) - medium.
    2019-01-15
    oval:com.ubuntu.disco:def:2018168460000000
    V
    CVE-2018-16846 on Ubuntu 19.04 (disco) - medium.
    2019-01-15
    oval:com.ubuntu.cosmic:def:201816846000
    V
    CVE-2018-16846 on Ubuntu 18.10 (cosmic) - medium.
    2019-01-15
    oval:com.ubuntu.cosmic:def:2018168460000000
    V
    CVE-2018-16846 on Ubuntu 18.10 (cosmic) - medium.
    2019-01-15
    oval:com.ubuntu.trusty:def:201816846000
    V
    CVE-2018-16846 on Ubuntu 14.04 LTS (trusty) - medium.
    2019-01-15
    oval:com.ubuntu.bionic:def:2018168460000000
    V
    CVE-2018-16846 on Ubuntu 18.04 LTS (bionic) - medium.
    2019-01-15
    oval:com.ubuntu.xenial:def:201816846000
    V
    CVE-2018-16846 on Ubuntu 16.04 LTS (xenial) - medium.
    2019-01-15
    BACK
    redhat ceph *
    debian debian linux 8.0
    debian debian linux 9.0
    opensuse leap 15.0
    redhat ceph storage 2.0
    redhat ceph storage 3.0
    redhat enterprise linux server 7.0
    canonical ubuntu linux 16.04
    canonical ubuntu linux 18.10
    canonical ubuntu linux 19.04
    linuxfoundation ceph 13.2.3