CVE-2025-52555

EUVD-2025-19240
Ceph is a distributed object, block, and file storage platform. In versions 17.2.7, 18.2.1 through 18.2.4, and 19.0.0 through 19.2.2, an unprivileged user can escalate to root privileges in a ceph-fuse mounted CephFS by chmod 777 a directory owned by root to gain access. The result of this is that a user could read, write and execute to any directory owned by root as long as they chmod 777 it. This impacts confidentiality, integrity, and availability. It is patched in versions 17.2.8, 18.2.5, and 19.2.3.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.5 MEDIUM
ADJACENT_NETWORK
HIGH
LOW
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 10.29%
Debian logo
Debian Releases
Debian Product
Codename
ceph
bookworm
16.2.15+ds-0+deb12u2
fixed
bookworm (security)
16.2.15+ds-0+deb12u2
fixed
forky
20.2.4+ds-1
fixed
sid
20.2.4+ds-1
fixed
trixie
18.2.7+ds-1+deb13u1
fixed
trixie (security)
18.2.7+ds-1+deb13u1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ceph
bionic
not-affected
focal
not-affected
jammy
not-affected
noble
not-affected
oracular
ignored
plucky
not-affected
questing
not-affected
trusty
not-affected
xenial
not-affected
Azure Linux logo
Azure Linux Releases
Azure Package
Release
ceph
Azure Linux 3.0
0:18.2.2-9.azl3
fixed