CVE-2020-25677
08.12.2020, 01:15
A flaw was found in Ceph-ansible v4.0.41 where it creates an /etc/ceph/iscsi-gateway.conf with insecure default permissions. This flaw allows any user on the system to read sensitive information within this file. The highest threat from this vulnerability is to confidentiality.Enginsight
Vendor | Product | Version |
---|---|---|
ceph | ceph-ansible | 4.0.41 |
redhat | ceph_storage | 3.0 |
redhat | ceph_storage | 4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration