Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The admin command in ceph-deploy before 1.5.25 uses world-readable permissions for /etc/ceph/ceph.client.admin.keyring, which allows local users to obtain sensitive information by reading the file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ceph-deploy 安全漏洞
Vulnerability Description
ceph-deploy是一套用来部署ceph(集群存储系统)的工具。 ceph-deploy 1.5.25之前版本的admin命令中存在安全漏洞,该漏洞源于程序为/etc/ceph/ceph.client.admin.keyring文件分配全局可读权限。本地攻击者可通过读取文件利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A