Vulnerabilities
Vulnerable Software
Redhat:  >> Ceph  >> 0.94.3.1  Security Vulnerabilities
In Ceph before 12.2.3 and 13.x through 13.0.1, the rgw_civetweb.cc RGWCivetWeb::init_env function in radosgw doesn't handle malformed HTTP headers properly, allowing for denial of service.
CVSS Score
7.5
EPSS Score
0.007
Published
2018-03-19
The handle_command function in mon/Monitor.cc in Ceph allows remote authenticated users to cause a denial of service (segmentation fault and ceph monitor crash) via an (1) empty or (2) crafted prefix.
CVSS Score
6.5
EPSS Score
0.017
Published
2016-07-12


Contact Us

Shodan ® - All rights reserved