Lucene search

K
redhatcveRedhat.comRH:CVE-2018-14654
HistoryOct 31, 2018 - 8:22 a.m.

CVE-2018-14654

2018-10-3108:22:49
redhat.com
access.redhat.com
12

EPSS

0.003

Percentile

70.0%

A flaw was found in the way glusterfs server handles client requests. A remote, authenticated attacker could set arbitrary values for the GF_XATTROP_ENTRY_IN_KEY and GF_XATTROP_ENTRY_OUT_KEY during xattrop file operation resulting in creation and deletion of arbitrary files on glusterfs server node.