Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-43040

Опубликовано: 14 мая 2024
Источник: debian

Описание

IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cephfixed16.2.11+ds-5package

Примечания

  • https://www.openwall.com/lists/oss-security/2023/09/26/10

  • https://tracker.ceph.com/issues/63004

  • https://github.com/ceph/ceph/pull/53714

  • Fixed by: https://github.com/ceph/ceph/commit/100d81aa060f061271499f1fa28dbdc06de443fd (main)

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 1 года назад

IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.

CVSS3: 6.3
redhat
больше 2 лет назад

IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.

CVSS3: 6.5
nvd
больше 1 года назад

IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.

CVSS3: 6.5
msrc
больше 1 года назад

IBM Spectrum Fusion HCI improper access control

CVSS3: 6.5
github
больше 1 года назад

IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.