Lucene search

K
osvGoogleOSV:CVE-2017-16818
HistoryDec 20, 2017 - 5:29 p.m.

CVE-2017-16818

2017-12-2017:29:00
Google
osv.dev
4

6.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.0%

RADOS Gateway in Ceph 12.1.0 through 12.2.1 allows remote authenticated users to cause a denial of service (assertion failure and application exit) by leveraging “full” (not necessarily admin) privileges to post an invalid profile to the admin API, related to rgw/rgw_iam_policy.cc, rgw/rgw_basic_types.h, and rgw/rgw_iam_types.h.

CPENameOperatorVersion
cepheq12.1.1
cepheq12.1.2
cepheq12.1.0
cepheq13.0.0

6.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

60.0%