This is the 6th backport release in the Octopus series. This releases fixes a security flaw affecting Messenger V2 for Octopus & Nautilus. We recommend users to update to this release. Notable Changes --------------- * CVE 2020-25660: Fix a regression in Messenger V2 replay attacks Getting Ceph ------------ * Git at git://github.com/ceph/ceph.git * Tarball at http://download.ceph.com/tarballs/ceph-15.2.6.tar.gz * For packages, see http://docs.ceph.com/docs/master/install/get-packages/ * Release git sha1: cb8c61a60551b72614257d632a574d420064c17a
On Thu, Nov 19, 2020 at 3:39 AM David Galloway <dgallowa@redhat.com> wrote:
This is the 6th backport release in the Octopus series. This releases fixes a security flaw affecting Messenger V2 for Octopus & Nautilus. We recommend users to update to this release.
Notable Changes --------------- * CVE 2020-25660: Fix a regression in Messenger V2 replay attacks
Correction: In Octopus, both Messenger v1 and Messenger v2 are affected. The release note will be fixed in [1]. [1] https://github.com/ceph/ceph/pull/38142 Thanks, Ilya
participants (2)
-
David Galloway
-
Ilya Dryomov