It was found that the fix for CVE-2018-10927, CVE-2018-10928, CVE-2018-10929, CVE-2018-10930, and CVE-2018-10926 was incomplete. A remote, authenticated attacker could use one of these flaws to execute arbitrary code, create arbitrary files, or cause denial of service on glusterfs server nodes via symlinks to relative paths.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2018-10-31T21:00:00
Updated: 2024-08-05T09:38:12.621Z
Reserved: 2018-07-27T00:00:00
Link: CVE-2018-14651
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-10-31T22:29:00.353
Modified: 2024-11-21T03:49:30.673
Link: CVE-2018-14651
Redhat