meta-virtualization/recipes-extended
jason.lau 3bfea241d0 ceph: fix CVE-2020-10736
An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2,
where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in
gaining access to unauthorized resources. This flaw allows an authenticated client to
modify the configuration and possibly conduct further attacks.

Upstream patches:

[master] c7e7009a69
[v15.2.2] f2cf2ce1bd

CVE: CVE-2020-10736

Signed-off-by: Liu Haitao <haitao.liu@windriver.com>
Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
2020-07-06 16:28:54 -04:00
..
ceph ceph: fix CVE-2020-10736 2020-07-06 16:28:54 -04:00
dev86 dev86: update SRC_URI and associated checksums 2020-03-02 15:04:42 -05:00
diod diod: support usrmerge 2019-09-03 15:59:40 -04:00
fuse-overlayfs fuse-overlayfs: add FUSE implementation of overlayfs 2019-10-13 11:16:40 -04:00
hyperstart hyperstart: refresh 0001-container.c-Fix-compiler-errors-that-gcc-8.1.0-repor.patch to apply cleanly 2020-03-03 19:59:18 -05:00
images xen-image-minimal: enable runqemu for x86-64 2020-03-02 15:04:28 -05:00
iptables Refactor to conform to YP Compat requirements 2018-04-23 12:38:50 -04:00
ipxe ipxe: fix build with uprev to the latest git revision 2020-02-27 16:59:22 -05:00
irqbalance irqbalance: upgrade 1.5.0 -> 1.6.0 2019-08-12 11:02:31 -04:00
kvmtool kvmtool: Werror Disabled Patch 2019-06-25 00:11:58 -04:00
libibverbs libibverbs: import frmo meta-cloud-services 2020-01-22 15:53:49 +00:00
libvirt libvirt: fix patch fuzz warning 2020-06-01 22:30:39 -04:00
libvmi libvmi: add byacc-native to the DEPENDS 2018-11-16 13:51:35 -05:00
nagios nagios-nrpe: Fix CVE-2020-6581 2020-05-02 11:04:48 -04:00
oath ceph: add support for ceph 2018-09-30 21:31:21 -04:00
seabios seabios: upgrade to version 1.13.0 at official URI and switch to python3 2020-02-27 16:59:22 -05:00
uxen uxen-guest-tools, image: package the Linux VM tools for uXen hypervisor 2020-02-27 17:00:09 -05:00
vgabios vgabios: replace PN with BPN, to solve fetch failure while building for multilib 2018-03-08 16:20:01 -05:00
xen xen: add patch to fix build on ARM64 with gcc 10.1.0 2020-07-06 16:25:56 -04:00
xvisor xvisor: Initial commit of Xvisor Hypervisor 2020-02-11 16:02:16 -05:00