VDB

DEBIAN-CVE-2018-10923

DEBIAN-CVE-2018-10923 PUBLISHED CVSS 8.100000381469727 HIGH

It was found that the "mknod" call derived from mknod(2) can create files pointing to devices on a glusterfs server node. An authenticated attacker could use this to create an arbitrary device and read data from any device attached to the glusterfs server node.

Risk Scores

CVSS v3.1
8.100000381469727
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Affected Products

VendorProductVersions
Debian:12glusterfs0, 0, 0
Debian:13glusterfs0, 0, 0
Debian:14glusterfs0, 0, 0
Debian:11glusterfs0, 0, 0

Timeline

  • Sep 4, 2018 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›