Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-10861

A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches master, mimic, luminous and jewel are believed to be affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.7%
CVSS Severity
CVSS v3 Score 8.1
CVSS v2 Score 5.5
References
Products affected by CVE-2018-10861
  • Ceph » Ceph » Version: 10.2.0
    cpe:2.3:a:ceph:ceph:10.2.0
  • Ceph » Ceph » Version: 10.2.1
    cpe:2.3:a:ceph:ceph:10.2.1
  • Ceph » Ceph » Version: 10.2.10
    cpe:2.3:a:ceph:ceph:10.2.10
  • Ceph » Ceph » Version: 10.2.11
    cpe:2.3:a:ceph:ceph:10.2.11
  • Ceph » Ceph » Version: 10.2.2
    cpe:2.3:a:ceph:ceph:10.2.2
  • Ceph » Ceph » Version: 10.2.3
    cpe:2.3:a:ceph:ceph:10.2.3
  • Ceph » Ceph » Version: 10.2.4
    cpe:2.3:a:ceph:ceph:10.2.4
  • Ceph » Ceph » Version: 10.2.5
    cpe:2.3:a:ceph:ceph:10.2.5
  • Ceph » Ceph » Version: 10.2.6
    cpe:2.3:a:ceph:ceph:10.2.6
  • Ceph » Ceph » Version: 10.2.7
    cpe:2.3:a:ceph:ceph:10.2.7
  • Ceph » Ceph » Version: 10.2.8
    cpe:2.3:a:ceph:ceph:10.2.8
  • Ceph » Ceph » Version: 10.2.9
    cpe:2.3:a:ceph:ceph:10.2.9
  • Ceph » Ceph » Version: 12.2.0
    cpe:2.3:a:ceph:ceph:12.2.0
  • Ceph » Ceph » Version: 12.2.1
    cpe:2.3:a:ceph:ceph:12.2.1
  • Ceph » Ceph » Version: 12.2.2
    cpe:2.3:a:ceph:ceph:12.2.2
  • Ceph » Ceph » Version: 12.2.3
    cpe:2.3:a:ceph:ceph:12.2.3
  • Ceph » Ceph » Version: 12.2.4
    cpe:2.3:a:ceph:ceph:12.2.4
  • Ceph » Ceph » Version: 12.2.5
    cpe:2.3:a:ceph:ceph:12.2.5
  • Ceph » Ceph » Version: 12.2.6
    cpe:2.3:a:ceph:ceph:12.2.6
  • Ceph » Ceph » Version: 12.2.7
    cpe:2.3:a:ceph:ceph:12.2.7
  • Ceph » Ceph » Version: 13.2.0
    cpe:2.3:a:ceph:ceph:13.2.0
  • Ceph » Ceph » Version: 13.2.1
    cpe:2.3:a:ceph:ceph:13.2.1
  • Redhat » Ceph Storage » Version: 3
    cpe:2.3:a:redhat:ceph_storage:3
  • Redhat » Ceph Storage Mon » Version: 2
    cpe:2.3:a:redhat:ceph_storage_mon:2
  • Redhat » Ceph Storage Mon » Version: 3
    cpe:2.3:a:redhat:ceph_storage_mon:3
  • Redhat » Ceph Storage Osd » Version: 2
    cpe:2.3:a:redhat:ceph_storage_osd:2
  • Redhat » Ceph Storage Osd » Version: 3
    cpe:2.3:a:redhat:ceph_storage_osd:3
  • Debian » Debian Linux » Version: 9.0
    cpe:2.3:o:debian:debian_linux:9.0
  • Opensuse » Leap » Version: 15.0
    cpe:2.3:o:opensuse:leap:15.0
  • Redhat » Enterprise Linux Desktop » Version: 7.0
    cpe:2.3:o:redhat:enterprise_linux_desktop:7.0
  • Redhat » Enterprise Linux Server » Version: 7.0
    cpe:2.3:o:redhat:enterprise_linux_server:7.0
  • cpe:2.3:o:redhat:enterprise_linux_workstation:7.0


Contact Us

Shodan ® - All rights reserved