ceph-19.2.6-1.fc43
- ceph-19.2.6-1.fc43
- CVE-2025-30156 is an authentication bypass in CephX caused by misuse of AES-CBC.
- CVE-2026-39944 shares the unauthenticated-encryption root cause of CVE-2025-30156
- CVE-2026-50152 is an improper authorization flaw in the Ceph Monitor subscription handler.
- CVE-2026-54330 is a flaw in RGW not properly verifying its SigV4 cryptographic signatures in RGW's SigV4 verifier.