Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-10928
Description:A flaw was found in RPC request using gfs3_symlink_req in glusterfs server which allows symlink destinations to point to file paths outside of the gluster volume. An authenticated attacker could use this flaw to create arbitrary symlinks pointing anywhere on the server and execute arbitrary code on glusterfs server nodes.
Test IDs: 1.3.6.1.4.1.25623.1.0.852995  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-10928
https://security.gentoo.org/glsa/201904-06
https://lists.debian.org/debian-lts-announce/2018/09/msg00021.html
https://lists.debian.org/debian-lts-announce/2021/11/msg00000.html
RedHat Security Advisories: RHSA-2018:2607
https://access.redhat.com/errata/RHSA-2018:2607
RedHat Security Advisories: RHSA-2018:2608
https://access.redhat.com/errata/RHSA-2018:2608
RedHat Security Advisories: RHSA-2018:3470
https://access.redhat.com/errata/RHSA-2018:3470
SuSE Security Announcement: openSUSE-SU-2020:0079 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00035.html




© 1998-2025 E-Soft Inc. All rights reserved.