Oval Definition:oval:com.ubuntu.bionic:def:2018108410000000
Revision Date:2018-06-20Version:1
Title:CVE-2018-10841 on Ubuntu 18.04 LTS (bionic) - medium.
Description:glusterfs is vulnerable to privilege escalation on gluster server nodes. An authenticated gluster client via TLS could use gluster cli with privileged gluster operations like adding other machines to trusted storage pool, start, stop, and delete volumes. It was discovered that GlusterFS incorrectly handled user permissions. An authenticated attacker could possibly use this to add himself to trusted storage pool and performing privileged operations on volumes.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-10841
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND glusterfs package in bionic is affected and needs fixing.
  • BACK