Gluster GlusterFS 3.12.14

CPE Details

Gluster GlusterFS 3.12.14
3.12.14
2019-05-09
13h37 +00:00
2019-05-09
13h37 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:gluster:glusterfs:3.12.14:*:*:*:*:*:*:*

Informations

Vendor

gluster

Product

glusterfs

Version

3.12.14

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2018-14651 2018-10-31 20h00 +00:00 It was found that the fix for CVE-2018-10927, CVE-2018-10928, CVE-2018-10929, CVE-2018-10930, and CVE-2018-10926 was incomplete. A remote, authenticated attacker could use one of these flaws to execute arbitrary code, create arbitrary files, or cause denial of service on glusterfs server nodes via symlinks to relative paths.
8.8
Haute
CVE-2018-10841 2018-06-20 16h00 +00:00 glusterfs is vulnerable to privilege escalation on gluster server nodes. An authenticated gluster client via TLS could use gluster cli with --remote-host command to add it self to trusted storage pool and perform privileged gluster operations like adding other machines to trusted storage pool, start, stop, and delete volumes.
8.8
Haute