Wind River Support Network

HomeDefectsLIN10-6687
Fixed

LIN10-6687 : Security Advisory - ceph - CVE-2019-10222

Created: Nov 14, 2019    Updated: Apr 21, 2022
Resolved Date: Apr 21, 2020
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

A flaw was found in the Ceph RGW configuration with Beast as the front end handling client requests. An unauthenticated attacker could crash the Ceph RGW server by sending valid HTTP headers and terminating the connection, resulting in a remote denial of service for Ceph RGW clients.

CREATE(Triage):(User=admin) CVE-2019-10222 (https://nvd.nist.gov/vuln/detail/CVE-2019-10222)

CVEs


Live chat
Online