Improper Authorization in Ceph - CVE-2026-50152

 

Improper Authorization in Ceph - CVE-2026-50152

Published: August 19, 2026


Vulnerability identifier: #VU144398
CSH Severity: Medium
CVSS v4: 7 [CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-50152
CWE-ID: CWE-285
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to disclose sensitive information.

The vulnerability exists due to improper authorization in the Monitor subscription handler when handling a crafted MMonSubscribe message. A remote user can send a single crafted MMonSubscribe message to disclose sensitive information.

Exploitation requires access to the cluster and a compromised account with mon allow r caps. On cephadm-managed clusters, exposed data may include the SSH private key used by cephadm to reach hosts.


Affected software

Ceph

How to mitigate CVE-2026-50152

Install security update from vendor's website.

Ceph - addressed in versions 19.2.6, 20.2.4

External References

Related Security Bulletins