Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19816
HistoryMay 16, 2019 - 3:24 a.m.

Information Disclosure

2019-05-1603:24:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.002 Low

EPSS

Percentile

54.6%

GlusterFS is vulnerable to information disclosure vulnerability. This is because “mknod” call derived from mknod(2) can create files pointing to devices on a glusterfs server node. An attacker could create an arbitrary device and obtain read access to data of any device attached to the glusterfs server node.

References