RGW fix for CVE-2026-54330 can break some S3 clients
31 Aug
2026
31 Aug
'26
9:08 a.m.
Hi, it seems not spread into this list yet? If you have upgraded to ceph 20.2.4/19.2.6 some S3 clients like restic[1] or php[2] can break due to a new introduced ceph BUG: https://tracker.ceph.com/issues/79674 Affected users can temporary disable the fix at runtime without any restarts: $ ceph config set client.rgw rgw_sigv4_insecure true until 20.2.5/19.2.7 gets releases. Thanks, Sascha. [1] https://github.com/restic/restic/issues/22033 [2] https://lp.zeroservices.eu/articles/ceph-sigv4-when-a-cve-fix-breaks-your-cl...
20
Age (days ago)
20
Last active (days ago)
0 comments
1 participants
participants (1)
-
Sascha Lucas