CVE-2018-10907

CVE-2018-10907

It was found that glusterfs server is vulnerable to multiple stack based buffer overflows due to functions in server-rpc-fopc.c allocating fixed size buffers using ‘alloca(3)’. An authenticated attacker could exploit this by mounting a gluster volume and sending a string longer that the fixed buffer size to cause crash or potential code execution.

Source: CVE-2018-10907

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다