Improper Authorization in Ceph - CVE-2026-50152
Published: August 19, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to improper authorization in the Monitor subscription handler when handling a crafted MMonSubscribe message. A remote user can send a single crafted MMonSubscribe message to disclose sensitive information.
Exploitation requires access to the cluster and a compromised account with mon allow r caps. On cephadm-managed clusters, exposed data may include the SSH private key used by cephadm to reach hosts.