Перейти к содержимому
Noroxi

Записи gluster

23 опубликованных записей вендора gluster.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
100 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

23 записей
  • CVE-2018-10907
    36Наблюдать

    It was found that glusterfs server is vulnerable to multiple stack based buffer overflows due to functions in server-rpc-fopc.c allocating f

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10929
    36Наблюдать

    A flaw was found in RPC request using gfs2_create_req in glusterfs server.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-14651
    36Наблюдать

    It was found that the fix for CVE-2018-10927, CVE-2018-10928, CVE-2018-10929, CVE-2018-10930, and CVE-2018-10926 was incomplete.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    debian · debian linux31 окт. 2018 г.

  • CVE-2018-10904
    36Наблюдать

    It was found that glusterfs server does not properly sanitize file paths in the "trusted.io-stats-dump" extended attribute which is used by

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10928
    36Наблюдать

    A flaw was found in RPC request using gfs3_symlink_req in glusterfs server which allows symlink destinations to point to file paths outside

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10926
    36Наблюдать

    A flaw was found in RPC request using gfs3_mknod_req supported by glusterfs server.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-1112
    36Наблюдать

    glusterfs server before versions 3.10.12, 4.0.2 is vulnerable when using 'auth.allow' option which allows any unauthenticated gluster client

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    gluster · glusterfs25 апр. 2018 г.

  • CVE-2018-10841
    35Наблюдать

    glusterfs is vulnerable to privilege escalation on gluster server nodes.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    gluster · glusterfs20 июн. 2018 г.

  • CVE-2018-10927
    33Наблюдать

    A flaw was found in RPC request using gfs3_lookup_req in glusterfs server.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10923
    33Наблюдать

    It was found that the "mknod" call derived from mknod(2) can create files pointing to devices on a glusterfs server node.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10911
    31Наблюдать

    A flaw was found in the way dic_unserialize function of glusterfs does not handle negative key length values.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2023-26253
    30Наблюдать

    In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    gluster · glusterfs20 февр. 2023 г.

  • CVE-2022-48340
    30Наблюдать

    In Gluster GlusterFS 11.0, there is an xlators/cluster/dht/src/dht-common.c dht_setxattr_mds_cbk use-after-free.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    gluster · glusterfs20 февр. 2023 г.

  • CVE-2018-14661
    27Наблюдать

    It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage,

    СредняяCVSS 6,5Эксплойта нетEPSS 3 %

    gluster · glusterfs31 окт. 2018 г.

  • CVE-2018-14660
    27Наблюдать

    A flaw was found in glusterfs server through versions 4.1.4 and 3.1.2 which allowed repeated usage of GF_META_LOCK_KEY xattr.

    СредняяCVSS 6,5Эксплойта нетEPSS 3 %

    gluster · glusterfs1 нояб. 2018 г.

  • CVE-2018-10914
    27Наблюдать

    It was found that an attacker could issue a xattr request via glusterfs FUSE to cause gluster brick process to crash which will result in a

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10930
    27Наблюдать

    A flaw was found in RPC request using gfs3_rename_req in glusterfs server.

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10913
    27Наблюдать

    An information disclosure vulnerability was discovered in glusterfs server.

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2018-10924
    27Наблюдать

    It was discovered that fsync(2) system call in glusterfs client code leaks memory.

    СредняяCVSS 6,5Эксплойта нетEPSS 2 %

    gluster · glusterfs4 сент. 2018 г.

  • CVE-2014-3619
    21Наблюдать

    The __socket_proto_state_machine function in GlusterFS 3.5 allows remote attackers to cause a denial of service (infinite loop) via a "00000

    СредняяCVSS 5,0Эксплойта нетEPSS 3 %

    gluster · glusterfs27 мар. 2015 г.

  • CVE-2012-4417
    14Наблюдать

    GlusterFS 3.3.0, as used in Red Hat Storage server 2.0, allows local users to overwrite arbitrary files via a symlink attack on temporary fi

    НизкаяCVSS 3,6Эксплойта нетEPSS 0 %

    gluster · glusterfs18 нояб. 2012 г.

  • CVE-2017-15096
    13Наблюдать

    A flaw was found in GlusterFS in versions prior to 3.10.

    НизкаяCVSS 3,3Эксплойта нетEPSS 0 %

    gluster · glusterfs26 окт. 2017 г.

  • CVE-2012-5635
    8Наблюдать

    The GlusterFS functionality in Red Hat Storage Management Console 2.0, Native Client, and Server 2.0 allows local users to overwrite arbitra

    НизкаяCVSS 2,1Эксплойта нетEPSS 0 %

    gluster · glusterfs9 апр. 2013 г.