CVE-2022-0670
25.07.2022, 14:15
A flaw was found in Openstack manilla owning a Ceph File system "share", which enables the owner to read/write any manilla share or entire file system. The vulnerability is due to a bug in the "volumes" plugin in Ceph Manager. This allows an attacker to compromise Confidentiality and Integrity of a file system. Fixed in RHCS 5.2 and Ceph 17.2.2.Enginsight
Vendor | Product | Version |
---|---|---|
linuxfoundation | ceph | 15.0.0 ≤ 𝑥 < 15.2.17 |
linuxfoundation | ceph | 16.0.0 ≤ 𝑥 < 16.2.10 |
linuxfoundation | ceph | 17.0.0 ≤ 𝑥 < 17.2.2 |
redhat | ceph_storage | 𝑥 < 5.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References