Vulnerability Name:

CVE-2020-10736 (CCN-182177)

Assigned:2020-05-19
Published:2020-05-19
Updated:2022-08-05
Summary:An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2, where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in gaining access to unauthorized resources. This flaw allows an authenticated client to modify the configuration and possibly conduct further attacks.
CVSS v3 Severity:8.0 High (CVSS v3.1 Vector: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
7.0 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Adjacent
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
4.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N)
3.8 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:5.2 Medium (CVSS v2 Vector: AV:A/AC:L/Au:S/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Adjacent_Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
4.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-Other
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2020-10736

Source: CONFIRM
Type: Issue Tracking, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10736

Source: CCN
Type: ceph Web site
ceph

Source: MISC
Type: Release Notes, Vendor Advisory
https://ceph.io/releases/v15-2-2-octopus-released/

Source: XF
Type: UNKNOWN
ceph-cve202010736-sec-bypass(182177)

Source: CCN
Type: Ubuntu CVE Tracker
CVE-2020-10736

Source: CCN
Type: oss-sec Mailing List, Tue, 19 May 2020 08:29:05 +0530
CVE-2020-10736 ceph: authorization bypass in monitor and manager daemons

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2020-10736

Vulnerable Configuration:Configuration 1:
  • cpe:/a:linuxfoundation:ceph:*:*:*:*:*:*:*:* (Version >= 15.2.0 and < 15.2.2)

  • Configuration CCN 1:
  • cpe:/a:linuxfoundation:ceph:15.2.1:*:*:*:*:*:*:*
  • AND
  • cpe:/o:canonical:ubuntu:16.04::~~lts~~~:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:18.04::~~lts~~~:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:12.04::~~esm~~~:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:14.04::~~esm~~~:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:20.04::~~lts~~~:*:*:*:*:*
  • OR cpe:/o:canonical:ubuntu:20.10:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:202010736
    V
    CVE-2020-10736
    2023-06-22
    oval:org.opensuse.security:def:7460
    P
    ceph-common-16.2.11.58+g38d6afd3b78-150400.3.6.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:624
    P
    Security update for python-crcmod, python-cryptography, python-cryptography-vectors (Moderate) (in QA)
    2022-09-26
    oval:org.opensuse.security:def:2886
    P
    ceph-common-16.2.7.654+gd5a90ff46f0-150400.1.4 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94516
    P
    ceph-common-16.2.7.654+gd5a90ff46f0-150400.1.4 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:24
    P
    ceph-common-15.2.9.83+g4275378de0-3.17.1 on GA media (Moderate)
    2022-06-13
    oval:org.opensuse.security:def:100393
    P
    (Important)
    2022-03-30
    oval:org.opensuse.security:def:953
    P
    Security update for ldns (Moderate)
    2022-03-02
    oval:org.opensuse.security:def:112052
    P
    ceph-16.2.6.45+g8fda9838398-1.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:105604
    P
    ceph-16.2.6.45+g8fda9838398-1.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:69716
    P
    Security update for krb5 (Important)
    2021-08-20
    oval:org.opensuse.security:def:71783
    P
    ceph-common-15.2.9.83+g4275378de0-3.17.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:100800
    P
    ceph-common-15.2.9.83+g4275378de0-3.17.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:62042
    P
    ceph-common-15.2.9.83+g4275378de0-3.17.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:69611
    P
    Security update for nghttp2 (Important)
    2021-03-24
    oval:org.opensuse.security:def:71454
    P
    ceph-common-15.2.2.18+g1dbcddb5d8-1.10 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:93680
    P
    ceph-common-15.2.2.18+g1dbcddb5d8-1.10 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107059
    P
    ceph-common-15.2.2.18+g1dbcddb5d8-1.10 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:61713
    P
    ceph-common-15.2.2.18+g1dbcddb5d8-1.10 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:116617
    P
    ceph-common-15.2.2.18+g1dbcddb5d8-1.10 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49011
    P
    libgio-fam-2.48.2-12.15.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49065
    P
    ceph-common on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:72933
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66268
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:66360
    P
    ceph-common on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73051
    P
    ceph-common on GA media (Moderate)
    2020-12-01
    BACK
    linuxfoundation ceph *
    linuxfoundation ceph 15.2.1
    canonical ubuntu 16.04
    canonical ubuntu 18.04
    canonical ubuntu 12.04
    canonical ubuntu 14.04
    canonical ubuntu 20.04
    canonical ubuntu 20.10