CVE-2018-10861 PUBLISHED

A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches master, mimic, luminous and jewel are believed to be affected.

EPSS 0.58% · 68.7th percentile

Risk Scores

EPSS Score
0.58%
68.7th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSceph0, 0.67.4-0ubuntu2, 0.67.4-0ubuntu3

Timeline

References

Open in Interactive Console →