7.5
CVSSv3

CVE-2019-3821

CVSSv4: NA | CVSSv3: 7.5 | CVSSv2: 5 | VMScore: 850 | EPSS: 0.00804 | KEV: Not Included
Published: 27/03/2019 Updated: 05/05/2025

Vulnerability Summary

It exists that Ceph incorrectly handled read only permissions. An authenticated attacker could use this issue to obtain dm-crypt encryption keys. This issue only affected Ubuntu 16.04 LTS. (CVE-2018-14662)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

[unknown] ceph

ceph civetweb

canonical ubuntu linux 16.04

canonical ubuntu linux 18.10

canonical ubuntu linux 19.04

Vendor Advisories

Several security issues were fixed in Ceph ...
Impact: Important Public Date: 2019-02-11 CWE: CWE-400 Bugzilla: 1656852: CVE-2019-3821 ceph: radosgw: ...