PT-2024-13330 · Ibm · Ibm Storage Ceph

Josh Baergen

+1

·

Published

2024-02-01

·

Updated

2024-11-15

·

CVE-2023-46159

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Storage Ceph versions 5.3z1 through 6.1z1
Description The issue allows an authenticated user on the network to cause a denial of service from RGW.
Recommendations For versions 5.3z1, 5.3z5, and 6.1z1, update to a version that fixes the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2023-46159
OESA-2024-2372
OESA-2024-2373
OESA-2024-2406
RHSA-2023:5693
RHSA-2024:0745
RHSA-2025:9775

Affected Products

Ibm Storage Ceph