PT-2024-41772 · Ceph · Ceph

Published

2024-01-01

·

Updated

2026-02-24

·

CVE-2024-31884

CVSS v2.0

6.1

Medium

VectorAV:N/AC:H/Au:N/C:C/I:N/A:P
Name of the Vulnerable Software and Affected Versions Ceph (affected versions not specified)
Description An issue exists in Ceph related to incorrect certificate checking when using Pybind. This flaw could allow an attacker to perform a Man In the Middle (MITM) attack, potentially compromising mail server credentials or the contents of mail.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

BDU:2026-06679
CVE-2024-31884
ECHO-D3E9-A9B9-FF54
MGASA-2026-0025
RHSA-2026:1536
RHSA-2026:2711
RHSA-2026:2769
USN-8045-1

Affected Products

Ceph