NA

CVE-2023-26253

Published: 21/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gluster glusterfs 11.0

Vendor Advisories

Debian Bug report logs - #1031731 glusterfs: CVE-2023-26253 Package: src:glusterfs; Maintainer for src:glusterfs is Patrick Matthäi <pmatthaei@debianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Tue, 21 Feb 2023 15:09:16 UTC Severity: important Tags: security, upstream Forwarded to github ...
In Gluster GlusterFS 110, there is an xlators/mount/fuse/src/fuse-bridgec notify stack-based buffer over-read (CVE-2023-26253) ...
DescriptionThe MITRE CVE dictionary describes this issue as: In Gluster GlusterFS 110, there is an xlators/mount/fuse/src/fuse-bridgec notify stack-based buffer over-read ...