Skip to main content

Vendor/product archive

redhat / gluster_storage CVEs

Beta · best-effort

26 CVEs tagged to redhat / gluster_storage1 Critical, 12 High, 13 Medium, 0 Low, 0 Unrated.

CVE-2019-3831

Published Mar 25, 2019

A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-2125

Published Oct 31, 2018

It was found that Samba before versions 4.5.3, 4.4.8, 4.3.13 always requested forwardable tickets when using Kerberos authentication. A service to which Samba authenticated using…

CVSS 6.5 · Medium

CVE-2018-1127

Published Sep 11, 2018

Tendrl API in Red Hat Gluster Storage before 3.4.0 does not immediately remove session tokens after a user logs out. Session tokens remain active for a few minutes allowing attack…

CVSS 4.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7481

Published Jul 19, 2018

Ansible before versions 2.3.1.0 and 2.4.0.0 fails to properly mark lookup-plugin results as unsafe. If an attacker could control the results of lookup() calls, they could inject U…

CVSS 9.8 · Critical

CVE-2018-10875

Published Jul 13, 2018

A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an atta…

CVSS 7.8 · High

CVE-2015-5242

Published Nov 25, 2015

OpenStack Swift-on-File (aka Swiftonfile) does not properly restrict use of the pickle Python module when loading metadata, which allows remote authenticated users to execute arbi…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 26 CVEsPage 1 of 2