Improper Authentication in open-iscsi - #VU148722
Published: September 9, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose CHAP credentials.
The vulnerability exists due to improper authentication of the IPC peer in iscsiadm when a privileged user runs an operation that sends a populated node_rec_t. A remote attacker can bind an attacker-controlled abstract UNIX socket and receive the IPC request to disclose CHAP credentials.
Exploitation requires the legitimate ISCSIADM_ABSTRACT_NAMESPACE socket to be unbound.