2.1
CVSSv2

CVE-2015-4053

Published: 08/06/2015 Updated: 25/06/2015
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The admin command in ceph-deploy prior to 1.5.25 uses world-readable permissions for /etc/ceph/ceph.client.admin.keyring, which allows local users to obtain sensitive information by reading the file.

Vulnerable Product Search on Vulmon Subscribe to Product

ceph ceph-deploy