Known vulnerabilities in Red Hat Ceph Storage - page 4

Software CPE: cpe:2.3:a:red_hat:red_hat_ceph_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 205
Public exploits: 11
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Red Hat Ceph Storage Red Hat Ceph Storage is affected by 205 known vulnerabilities: 27 high, 112 medium, 66 low Critical High Medium Low

Vulnerabilities (205)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU105723 - Stack-based buffer overflow
CVE-2024-8176
CWE-121 High
No
No
6.1, 8.1 14.03.2025 SB2025031426
SB2025031429
SB2025031430
and 105 more
#VU103932 - Missing release of memory after effective lifetime
CVE-2025-22866
CWE-401 Low
No
No
7.1 12.02.2025 SB20250212100
SB20250212101
SB20250212102
and 27 more
#VU103687 - Memory corruption
CVE-2025-0395
CWE-119 Medium
No
No
7.1 06.02.2025 SB2025020664
SB2025020667
SB2025020668
and 66 more
#VU103455 - Exposure of sensitive information to an unauthorized actor
CVE-2024-45336
CWE-200 Low
No
No
7.1 30.01.2025 SB2025013039
SB2025013043
SB2025013044
and 38 more
#VU102357 - Improper Authentication
CVE-2024-48916
CWE-287 High
No
No
6.1, 7.1, 8.0 06.01.2025 SB2025010643
SB2025010644
SB2025010702
and 11 more
#VU98048 - Improper Authentication
CVE-2024-47191
CWE-287 Low
No
No
6.1, 7.1, 8.0, 8.1 05.10.2024 SB2024100508
SB2024100513
SB2024100514
and 19 more
#VU97216 - Resource exhaustion
CVE-2024-34156
CWE-400 Medium
No
No
6.1, 8.1 12.09.2024 SB2024091261
SB2024091264
SB2024091265
and 143 more
#VU96055 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2024-42353
CWE-601 Low
No
No
7.1, 8.1 15.08.2024 SB2024081552
SB2024081555
SB2024081556
and 44 more
#VU91160 - Improper input validation
CVE-2024-24790
CWE-20 Medium
No
No
6.1, 7.1, 8.1 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 90 more
#VU91159 - Improper input validation
CVE-2024-24789
CWE-20 Low
No
No
6.1, 8.1 05.06.2024 SB2024060520
SB2024060635
SB2024060729
and 78 more
#VU89149 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-34069
CWE-94 Medium
No
No
7.1 06.05.2024 SB2024050606
SB2024050723
SB2024050930
and 54 more
#VU88184 - Resource exhaustion
CVE-2023-45288
CWE-400 Medium
Available
No
6.1 05.04.2024 SB2024040533
SB2024040549
SB2024040551
and 189 more
#VU84953 - Insufficient Verification of Data Authenticity
CVE-2023-46446
CWE-345 Medium
No
No
7.1 03.01.2024 SB2024010327
SB2024010328
SB2024020802
and 8 more
#VU84537 - Inadequate Encryption Strength
CVE-2023-48795
CWE-326 Low
Available
No
7.1 19.12.2023 SB2023121903
SB2023121905
SB2023121906
and 343 more
#VU77531 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-29405
CWE-94 Medium
No
No
5.3 19.06.2023 SB2023061954
SB2023061955
SB2023061956
and 45 more
#VU77530 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-29404
CWE-94 Medium
No
No
5.3 19.06.2023 SB2023061954
SB2023061955
SB2023061956
and 44 more
#VU77528 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-29402
CWE-94 Medium
No
No
5.3 19.06.2023 SB2023061954
SB2023061955
SB2023061956
and 45 more
#VU75791 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-24540
CWE-94 Medium
No
No
5.3 08.05.2023 SB2023050814
SB2023050817
SB2023050825
and 81 more
#VU72340 - Improper input validation
CVE-2023-23934
CWE-20 Low
No
No
7.1, 8.1 16.02.2023 SB2023021673
SB2023031332
SB2023031613
and 33 more
#VU72339 - Resource exhaustion
CVE-2023-25577
CWE-400 Medium
No
No
7.1, 8.1 16.02.2023 SB2023021673
SB2023022875
SB2023031332
and 49 more


Showing elements 61 - 80 out of 205