PT-2018-10191 · Red Hat+4 · Glusterfs+4

Publicado

2018-09-04

·

Atualizado

2021-12-10

·

CVE-2018-10930

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions glusterfs (affected versions not specified)
Description A flaw was found in the RPC request using gfs3 rename req in the glusterfs server. An authenticated attacker could use this flaw to write to a destination outside the gluster volume.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2018-2484
CESA-2018_2607
CVE-2018-10930
DLA-1510-1
DLA-1565-1
DLA-2806-1
OPENSUSE-SU-2020:0079-1
OPENSUSE-SU-2020_0079-1
OPENSUSE-SU-2024:10794-1
RHSA-2018:2607
RHSA-2018:2608
RHSA-2018:3470
USN-4770-1

Produtos afetados

Alt Linux
Centos
Suse
Ubuntu
Glusterfs