Known vulnerabilities in Red Hat Ceph Storage

Software CPE: cpe:2.3:a:red_hat:red_hat_ceph_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 205
Public exploits: 11
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Ceph Storage Red Hat Ceph Storage is affected by 205 known vulnerabilities: 27 high, 112 medium, 66 low Critical High Medium Low

Vulnerabilities (205)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU116005 - Use of Insufficiently Random Values
CVE-2024-52615
CWE-330 Medium
No
No
7.1 22.09.2025 SB2025092255
SB2025092256
SB2025092262
and 10 more
#VU112440 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2025-3576
CWE-327 Medium
No
No
7.1 07.07.2025 SB2025070764
SB2025070769
SB2025070770
and 29 more
#VU112131 - Permissions, Privileges, and Access Controls
CVE-2025-52555
CWE-264 Low
No
No
9.0 03.07.2025 SB2025070314
SB2025071898
SB2025072529
and 6 more
#VU112067 - Protection Mechanism Failure
CVE-2025-32462
CWE-693 Low
Available
No
7.1 01.07.2025 SB2025070109
SB2025070111
SB2025070112
and 42 more
#VU111970 - Expected Behavior Violation
CVE-2025-4435
CWE-440 Low
No
No
7.1 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 59 more
#VU111969 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-12718
CWE-22 Medium
No
No
7.1 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 62 more
#VU111968 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-4138
CWE-59 High
Available
No
7.1 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 64 more
#VU111967 - Improper Link Resolution Before File Access ('Link Following')
CVE-2025-4330
CWE-59 High
No
No
7.1 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 63 more
#VU111966 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-4517
CWE-22 High
Available
No
7.1 26.06.2025 SB2025062630
SB2025062633
SB2025062634
and 77 more
#VU111872 - Resource Management Errors
CVE-2025-5702
CWE-399 Medium
No
No
7.1 24.06.2025 SB2025062437
SB2025062438
SB2025062439
and 11 more
#VU111389 - Improper Access Control
CVE-2025-6020
CWE-284 Low
No
No
7.1 19.06.2025 SB2025061987
SB2025061992
SB20250619103
and 69 more
#VU111225 - Integer overflow
CVE-2025-6021
CWE-190 High
No
No
7.1 17.06.2025 SB2025061921
SB2025062408
SB2025062747
and 63 more
#VU111223 - Type confusion
CVE-2025-49796
CWE-843 Medium
No
No
7.1 17.06.2025 SB2025061728
SB2025070832
SB20250709112
and 84 more
#VU111221 - Use After Free
CVE-2025-49794
CWE-416 Medium
No
No
7.1 17.06.2025 SB2025061728
SB2025070832
SB20250709112
and 65 more
#VU109848 - Integer overflow
CVE-2025-4373
CWE-190 High
No
No
7.1 27.05.2025 SB2025052742
SB2025052946
SB2025060610
and 42 more
#VU109840 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-47273
CWE-22 High
No
No
7.1 27.05.2025 SB2025052721
SB2025052734
SB2025052736
and 112 more
#VU105900 - Memory corruption
CVE-2025-25724
CWE-119 High
No
No
7.1 20.03.2025 SB2025032034
SB2025032045
SB2025032169
and 25 more
#VU100566 - Off-by-one Error
CVE-2024-52533
CWE-193 High
No
No
7.1 15.11.2024 SB20241115147
SB20241115148
SB20241115149
and 71 more
#VU85240 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-11831
CWE-79 Medium
No
No
9.0 09.01.2024 SB2024010997
SB2025021411
SB2025021412
and 17 more
#VU72319 - Resource exhaustion
CVE-2023-25153
CWE-400 Medium
No
No
9.0 16.02.2023 SB2023021620
SB2023051934
SB2023060110
and 30 more


Showing elements 1 - 20 out of 205