VDB

GCVE-110-MAGEIA-2026-389

GCVE-110-MAGEIA-2026-389
Advisory Published
Vulnetix · Advisory published September 9, 2026
Updated ceph packages fix various security issues allowing authentication bypasses to gain admin privileges on the OSD, MDS, and MGR services. Notice that some of the fixes require kernel support for aes256k (introduced in kernel 7). This update will not break installs using the old (and insecure) AES keys; warnings will appear to migrate all keys (check out "ceph health detail" or "ceph status").

Affected Products

VendorProductVersionsPlatforms
Mageiaceph0 (affected), 20.2.4-1.mga10 (unaffected)

Browse GCVE Records

486 records in the GCVE database · Updated September 10, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›