]> git.apps.os.sepia.ceph.com Git - ceph-ci.git/commitdiff
doc: 16.2.4 Release Notes
authorDavid Galloway <dgallowa@redhat.com>
Thu, 13 May 2021 18:53:53 +0000 (14:53 -0400)
committerDavid Galloway <dgallowa@redhat.com>
Thu, 13 May 2021 19:03:57 +0000 (15:03 -0400)
Signed-off-by: David Galloway <dgallowa@redhat.com>
doc/releases/index.rst
doc/releases/pacific.rst
doc/releases/releases.yml

index 8a251305aea2d23d0af67f298b0b2f423ea8c7ec..56204a08f75001ba61a96b0881f87248c5b404d0 100644 (file)
@@ -59,6 +59,7 @@ Release timeline
 
 
 .. _Pacific: pacific
+.. _16.2.4: pacific#v16-2-4-pacific
 .. _16.2.3: pacific#v16-2-3-pacific
 .. _16.2.2: pacific#v16-2-2-pacific
 .. _16.2.1: pacific#v16-2-1-pacific
index 54e2dd0f840ae0367d9c25a7b1a81c836f6c2f7b..6f8d5326e8d74c3549dd5c0693e907d0d04c827a 100644 (file)
@@ -5,6 +5,21 @@ Pacific
 Pacific is the 16th stable release of Ceph.  It is named after the
 giant pacific octopus (Enteroctopus dofleini).
 
+v16.2.4 Pacific
+===============
+
+This is a hotfix release addressing a number of security issues and regressions. We recommend all users update to this release.
+
+Changelog
+---------
+
+* mgr/dashboard: fix base-href: revert it to previous approach (`issue#50684 <https://tracker.ceph.com/issues/50684>`_, Avan Thakkar)
+* mgr/dashboard: fix cookie injection issue (:ref:`CVE-2021-3509`, Ernesto Puerta)
+* mgr/dashboard: fix set-ssl-certificate{,-key} commands (`issue#50519 <https://tracker.ceph.com/issues/50519>`_, Alfonso Martínez)
+* rgw: RGWSwiftWebsiteHandler::is_web_dir checks empty subdir_name (:ref:`CVE-2021-3531`, Felix Huettner)
+* rgw: sanitize \r in s3 CORSConfiguration's ExposeHeader (:ref:`CVE-2021-3524`, Sergey Bobrov, Casey Bodley)
+* systemd: remove ProtectClock=true for ceph-osd@.service (`issue#50347 <https://tracker.ceph.com/issues/50347>`_, Wong Hoi Sing Edison)
+
 v16.2.3 Pacific
 ===============
 
index bf1e8f27aedf64b4d4df072f3dd98535d4d51a84..12342f64d9240aa946820196483acc8411991192 100644 (file)
@@ -15,6 +15,8 @@ releases:
   pacific:
     target_eol: 2023-06-01
     releases:
+      - version: 16.2.4
+        released: 2021-05-13
       - version: 16.2.3
         released: 2021-05-06
       - version: 16.2.2