RHSA-2026:56928: Red Hat OpenShift Data Foundation 4.22.2 security, enhancement & bug fix update

Published Aug 19, 2026
·
Updated

Red Hat OpenShift Data Foundation 4.22.2 security, enhancement & bug fix updateFIXED BUGS:==========DFBUGS-9558: [MDR]: Post-upgrade (4.21 to 4.22) DRPolicy validation failure in Metro DRDFBUGS-9404: [Backport to odf-4.22.2] Adjust key rotation mismatch alert to recommend contacting supportDFBUGS-9071: [4.22 clone] - must-gather Helper pod fails with "realpath: /var/lib/rook-ceph-mon/secret.keyring: No such file or directory" causing all Ceph CLI collection to be skippedDFBUGS-9018: [Backport to odf-4.22.z] minor odf-operator.v4.23.0 failing on OCP 5.0DFBUGS-8998: [Critical] Upgrade ceph version to RHCEPH-9.1z1 at ODF-4.22.1DFBUGS-8996: The console pod in openshift console is continuously restarting DFBUGS-8956: RHODF 4.22.2 releaseDFBUGS-8896: drbd-setup script fails to pull odf-drbd-rhel9 image from registry.redhat.io — unauthorized errorDFBUGS-8892: [backport-4.22] ocs-client-operator fails to find CSI images ConfigMap on OCP 5.0.0 — blocks entire Ceph CSI deploymentDFBUGS-8890: Failed to install ODF 4.22 on OCP 5.0DFBUGS-8882: [TNF/ODF-4.22] Failed to deploy a drbd module in the nodeDFBUGS-8812: Post completion of installation for FUSION and FDF cnsa-dependencies status is reported as UNKNOWNDFBUGS-8798: [MDR] [HCI client]CephFS NetworkFence fencing fails with EACCES error when listing active MDS clientsDFBUGS-8514: [Backport to odf-4.22.2] ODF 4.19 OCS Metrics Exporter not receiving Network Attachment AnnotationDFBUGS-8224: [RDR] DR protection for RBD workloads fails after DR configurationDFBUGS-8201: [odf-4.22] - [GSS] Red Hat Virtualization VMs in Paused State - "VMI was paused, low-level IO error detected" w/rbd Volumes Impacted and Clients BlocklistedDFBUGS-8115: [Backport to odf-4.22.z] [RDR] [dryRun] For cephfs discovered app in deployed state, after dryRun and abort, progression changes from TestingFailover to WaitOnUserToCleanUp but changes to Completed even without workload cleanupDFBUGS-7974: [Backport to odf-4.22.1] [GSS] PDB is created for rgw even though the gateway instance count is 1DFBUGS-7410: [RDR] [dryRun] For workload in various states, ensure dryRun test failover abort works correctly and retains workloads original stateDFBUGS-6160: [GSS] Random Pod delete makes the container in openshift-storage.rbd.csi.ceph.com-nodeplugin-csi-addons restartDFBUGS-5644: Customer is able to see the alert StorageClientHeartbeatMissed constantly, roughly every 6 minutes it goes alerting and then it gets auto resolved.

Affected Software

1 affected component
Red Hat OpenShift Data Foundation=4.22.2

Event History

Aug 19, 2026
Advisory Published
via Red Hat·12:00 AM
Data Sourced
via Red Hat·12:00 AM
RemedyDescriptionAffected Software

Frequently Asked Questions

1

Are specific CVEs or vulnerability severity details identified for this update?

No specific CVEs, vulnerability descriptions, or severity scores are included in the provided advisory data. The update is described as containing security, enhancement, and bug-fix changes.

2

Which environments have explicitly listed operational fixes in this release?

The listed fixes include Metro DR DRPolicy validation after upgrading from 4.21 to 4.22, OpenShift Container Platform 5.0 installation and CSI deployment failures, DRBD image-pull and module-deployment failures, and a continuously restarting console pod. It also fixes must-gather Ceph CLI collection being skipped when a monitor keyring path is absent.

3

How can an administrator recognize some of the addressed issues before updating?

Reported indicators include DRPolicy validation failure in Metro DR after an upgrade, an unauthorized error while pulling the odf-drbd-rhel9 image, failure to locate the CSI images ConfigMap, console pods repeatedly restarting, and must-gather output showing a realpath error for /var/lib/rook-ceph-mon/secret.keyring.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203