Wind River Support Network

HomeDefectsLIN6-15020
Fixed

LIN6-15020 : Security Advisory - glusterfs - CVE-2018-10926

Created: Sep 17, 2018    Updated: Dec 24, 2018
Resolved Date: Nov 18, 2018
Found In Version: 6.0.0.37
Fix Version: 6.0.0.38
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

A flaw was found in RPC request using gfs3_mknod_req supported by glusterfs server. An authenticated attacker could use this flaw to write files to an arbitrary location via path traversal and execute arbitrary code on a glusterfs server node.

https://nvd.nist.gov/vuln/detail/CVE-2018-10926

Other Downloads


Live chat
Online