Security Advisory

CVE-2018-10923

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-09-04 14:00:00
Last updated 2024-08-05 07:54:35
Assigner redhat
CVSS score 7.6
State PUBLISHED

Description

It was found that the "mknod" call derived from mknod(2) can create files pointing to devices on a glusterfs server node. An authenticated attacker could use this to create an arbitrary device and read data from any device attached to the glusterfs server node.