Lucene search

K
redhatRedHatRHSA-2020:5599
HistoryDec 17, 2020 - 4:13 a.m.

(RHSA-2020:5599) Important: web-admin-build security and bug fix update

2020-12-1704:13:39
access.redhat.com
45

0.717 High

EPSS

Percentile

98.1%

Red Hat Gluster Storage is software only scale-out storage solution that
provides flexible and affordable unstructured data storage. It unifies data
storage and infrastructure, increases performance, and improves
availability and manageability to meet enterprise-level storage challenges.

Security Fix(es):

  • grafana: SSRF incorrect access control vulnerability allows unauthenticated users to make grafana send HTTP requests to any URL (CVE-2020-13379)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

This advisory fixes the following bug:

  • Previously, tendrl-node-agent service was unable to import the cluster in a VMware environment as tendrl was looking for the serial number of the devices. With the current update, tendrl-node-agent service is able to import the cluster in a VMware environment without failure as the hardware_id and parent_id of the devices are used after proper validation instead of the serial number. (BZ#1809920)

Users of web-admin-build with Red Hat Gluster Storage are advised to upgrade to these updated packages.