diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index b16709efc602..aa20ef53cd99 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,37 @@ Notes: * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + ceph14 -- multiple security issues + + + ceph14 + 14.1.114.2.9 + + + + +

RedHat reports:

+
+

ceph: secure mode of msgr2 breaks both confidentiality and integrity aspects for long-lived sessions.

+
+
+

ceph: header-splitting in RGW GetObject has a possible XSS.

+
+ +
+ + CVE-2020-1759 + https://www.openwall.com/lists/oss-security/2020/04/07/2 + CVE-2020-1760 + https://www.openwall.com/lists/oss-security/2020/04/07/1 + + + 2020-04-07 + 2020-04-14 + +
+ nested filters leads to stack overflow