Security restrictions bypass in Ceph - CVE-2018-10861
Published: August 10, 2018 / Updated: August 28, 2018
Vulnerability details
The vulnerability allows an adjacent authenticated attacker to bypass security restrictions on the target system.
The vulnerability exists in ceph branches master, mimic, luminous and jewel due to improper handling of user-supplied requests by ceph mon. An adjacent attacker with read access to ceph can delete, create ceph storage pools and corrupt snapshot images.
Affected software
Debian Linux
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for Scientific Computing
Opensuse
Fedora
Red Hat Ceph Storage
cephmetrics (Red Hat package)
nfs-ganesha (Red Hat package)
ceph-ansible (Red Hat package)
ceph
How to mitigate CVE-2018-10861
Red Hat Ceph Storage - addressed in versions 2.5, 3
cephmetrics (Red Hat package) - update to 1.0.1-1.el7cp
nfs-ganesha (Red Hat package) - update to 2.5.5-6.el7cp
ceph-ansible (Red Hat package) - update to 3.0.39-1.el7cp
ceph - addressed in versions 12.2.6-1.fc27, 12.2.6-1.fc28, 12.2.7-1.fc27
External References
Related Security Bulletins
- Multiple vulnerabilities in ceph
- Debian update for ceph
- OpenSUSE Linux update for ceph
- OpenSUSE Linux update for ceph
- Red Hat Ceph Storage 3 update for ceph
- Red Hat Ceph Storage 2 update for ceph
- Fedora 28 update for ceph
- Fedora 27 update for ceph
- Fedora 27 update for ceph
- Multiple vulnerabilities in Red Hat Ceph Storage 3
- Multiple vulnerabilities in Red Hat Ceph Storage 2