ZeroHour

CVE-2018-14651

CVSS 3.0
8.8 high
EPSS
3%p87
Published
()
Modified
Description

It was found that the fix for CVE-2018-10927, CVE-2018-10928, CVE-2018-10929, CVE-2018-10930, and CVE-2018-10926 was incomplete. A remote, authenticated attacker could use one of these flaws to execute arbitrary code, create arbitrary files, or cause denial of service on glusterfs server nodes via symlinks to relative paths.

Vendors
debianredhatgluster
Products
debian linux, enterprise linux, glusterfs
Weakness
CWE-59
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.