CVE-2015-4053 REJECTED

The admin command in ceph-deploy before 1.5.25 uses world-readable permissions for /etc/ceph/ceph.client.admin.keyring, which allows local users to obtain sensitive information by reading the file.

EPSS 0.05% · 15.4th percentile

Risk Scores

EPSS Score
0.05%
15.4th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSceph-deploy0, 1.5.20-0ubuntu1, 1.5.31-0ubuntu1

Timeline

References

Open in Interactive Console →