CVE-2018-14652 -- glusterfs-commonID: oval:org.secpod.oval:def:1901637 | Date: (C)2019-04-21 (M)2023-12-20 |
Class: VULNERABILITY | Family: unix |
The Gluster file system through versions 3.12 and 4.1.4 is vulnerable to a buffer overflow in the "features/index" translator via the code handling the "GF_XATTR_CLRLK_CMD" xattr in the "pl_getxattr" function. A remote authenticated attacker could exploit this on a mounted volume to cause a denial of service.
Platform: |
Ubuntu 16.04 |
Ubuntu 18.10 |
Ubuntu 14.04 |
Ubuntu 18.04 |