A flaw was found in the way dic_unserialize function of glusterfs does not handle negative key length values. An attacker could use this flaw to read memory from other locations into the stored dict value.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2018-09-04T14:00:00
Updated: 2024-08-05T07:54:35.246Z
Reserved: 2018-05-09T00:00:00
Link: CVE-2018-10911
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2018-09-04T14:29:00.220
Modified: 2022-04-22T19:06:03.490
Link: CVE-2018-10911
Redhat