PT-2016-7532 · Red Hat+2 · Red Hat Ceph+2

Siddharth Sharma

·

Published

2015-10-20

·

Updated

2019-10-09

·

CVE-2016-8626

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Red Hat Ceph versions prior to 0.94.9-8
Description A flaw in the Ceph Object Gateway allows an authenticated attacker to launch a denial of service attack by sending null or specially crafted POST object requests.
Recommendations For versions prior to 0.94.9-8, update to version 0.94.9-8 or later to resolve the issue.

Fix

DoS

RCE

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1896
CVE-2016-8626
RHSA-2016:2815
RHSA-2016:2847
SUSE-SU-2017:0758-1
USN-3452-1

Affected Products

Alt Linux
Red Hat Ceph
Ubuntu