Bug 2050728 (CVE-2022-0670) - CVE-2022-0670 ceph: user/tenant can obtain access (read/write) to any share
Summary: CVE-2022-0670 ceph: user/tenant can obtain access (read/write) to any share
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2022-0670
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2056107 2056108 2056109 2065602 2065603 2110017
Blocks: 2050731
TreeView+ depends on / blocked
 
Reported: 2022-02-04 14:28 UTC by Pedro Sampaio
Modified: 2023-02-01 23:28 UTC (History)
43 users (show)

Fixed In Version: RHCS 5.2 Ceph v 17.2.2
Doc Type: If docs needed, set a value
Doc Text:
A flaw was found in OpenStack Manila, where owning a Ceph File system "share" enables the owner to read/write any Manila share or entire file system. The vulnerability is due to a bug in the "volumes" plugin in Ceph Manager. This flaw allows an attacker to compromise the confidentiality and integrity of a file system.
Clone Of:
Environment:
Last Closed: 2022-09-01 05:55:51 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2022:5997 0 None None None 2022-08-09 17:35:53 UTC

Description Pedro Sampaio 2022-02-04 14:28:28 UTC
A vulnerability was found that allows an OpenStack manilla user/tenant (owner of a Ceph File System "share") to access (read/write) any manilla share and even have read/write access to an entire file system. The vulnerability is due to a bug in the "volumes" plugin in Ceph Manager.

Comment 1 juneau 2022-02-07 17:47:21 UTC
Removed OSD from affects.

Comment 9 Sage McTaggart 2022-07-22 18:25:28 UTC
Created ceph tracking bugs for this issue:

Affects: fedora-all [bug 2110017]

Comment 10 Fedora Update System 2022-08-03 01:48:56 UTC
FEDORA-2022-6d129f14f2 has been pushed to the Fedora 35 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 11 errata-xmlrpc 2022-08-09 17:35:50 UTC
This issue has been addressed in the following products:

  Red Hat Ceph Storage 5.2

Via RHSA-2022:5997 https://access.redhat.com/errata/RHSA-2022:5997

Comment 12 Product Security DevOps Team 2022-09-01 05:55:48 UTC
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):

https://access.redhat.com/security/cve/cve-2022-0670


Note You need to log in before you can comment on or make changes to this bug.