Name | CVE-2018-1128 |
Description | It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access to ceph cluster network who is able to sniff packets on network can use this vulnerability to authenticate with ceph service and perform actions allowed by ceph service. Ceph branches master, mimic, luminous and jewel are believed to be vulnerable. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more) |
References | DLA-1715-1, DSA-4339-1 |
Debian Bugs | 913471 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
ceph (PTS) | jessie, jessie (lts) | 0.80.7-2+deb8u5 | vulnerable |
stretch (security), stretch (lts), stretch | 10.2.11-2+deb9u1 | fixed | |
buster | 12.2.11+dfsg1-2.1 | fixed | |
bullseye | 14.2.21-1 | fixed | |
sid, bookworm | 16.2.11+ds-2 | fixed | |
linux (PTS) | jessie, jessie (lts) | 3.16.84-1 | vulnerable |
stretch (security) | 4.9.320-2 | fixed | |
stretch (lts), stretch | 4.9.320-3 | fixed | |
buster | 4.19.249-2 | fixed | |
buster (security) | 4.19.269-1 | fixed | |
bullseye | 5.10.158-2 | fixed | |
bullseye (security) | 5.10.162-1 | fixed | |
bookworm | 6.1.15-1 | fixed | |
sid | 6.1.20-1 | fixed | |
linux-4.9 (PTS) | jessie, jessie (lts) | 4.9.303-1~deb8u3 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
ceph | source | stretch | 10.2.11-1 | DSA-4339-1 | ||
ceph | source | (unstable) | 12.2.8+dfsg1-1 | 913471 | ||
linux | source | wheezy | (unfixed) | end-of-life | ||
linux | source | stretch | 4.9.144-1 | |||
linux | source | (unstable) | 4.19.9-1 | |||
linux-4.9 | source | jessie | 4.9.144-3.1~deb8u1 | DLA-1715-1 |
[jessie] - linux <ignored> (Protocol change is too difficult)
https://git.kernel.org/linus/6daca13d2e72bedaaacfc08f873114c9307d5aea
[jessie] - ceph <no-dsa> (Intrusive changes)
http://tracker.ceph.com/issues/24836
https://github.com/ceph/ceph/commit/5ead97120e07054d80623dada90a5cc764c28468