Comment 1 for bug 1873193

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package ceph - 15.2.1-0ubuntu1

---------------
ceph (15.2.1-0ubuntu1) focal; urgency=high

  * New upstream point release for Octopus (LP: #1873193):
    - CVE-2020-1759: Fixed nonce reuse in msgr V2 secure mode.
    - CVE-2020-1760: Fixed XSS due to RGW GetObject header-splitting.
  * d/copyright: Restore excluded files.

 -- James Page <email address hidden> Fri, 17 Apr 2020 20:08:37 +0100