A flaw was found in the Cephx authentication protocol in versions before 15.2.6 and before 14.2.14, where it does not verify Ceph clients correctly and is then vulnerable to replay attacks in Nautilus. This flaw allows an attacker with access to the Ceph cluster network to authenticate with the Ceph service via a packet sniffer and perform actions allowed by the Ceph service. This issue is a reintroduction of CVE-2018-1128, affecting the msgr2 protocol. The msgr 2 protocol is used for all communication except older clients that do not support the msgr2 protocol. The msgr1 protocol is not affected. The highest threat from this vulnerability is to confidentiality, integrity, and system availability.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade cephUpgrade ceph16 | Aug 22, 2024 | Nov 23, 2020 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Nov 23, 2020 |
| Centos_linux | — | Upgrade libradospp-develUpgrade python3-rbdUpgrade libntirpc-debuginfoUpgrade ceph-test-debuginfoUpgrade ceph-debugsourceUpgrade ceph-mdsUpgrade ceph-mon-debuginfoUpgrade ceph-baseUpgrade librgw-develUpgrade nfs-ganesha-rados-grace-debuginfoUpgrade libcephfs2-debuginfoUpgrade python3-cephfs-debuginfoUpgrade nfs-ganesha-debugsourceUpgrade librados-develUpgrade nfs-ganesha-vfsUpgrade python3-rados-debuginfoUpgrade librgw2-debuginfoUpgrade python3-radosUpgrade python3-ceph-argparseUpgrade nfs-ganesha-selinuxUpgrade nfs-ganesha-rgwUpgrade rbd-nbd-debuginfoUpgrade nfs-ganesha-vfs-debuginfoUpgrade libcephfs2Upgrade ceph-radosgw-debuginfoUpgrade nfs-ganesha-rgw-debuginfoUpgrade ceph-grafana-dashboardsUpgrade python3-cephfsUpgrade python3-rgwUpgrade cockpit-ceph-installerUpgrade librgw2Upgrade nfs-ganesha-proxy-debuginfoUpgrade ceph-selinuxUpgrade ceph-fuse-debuginfoUpgrade nfs-ganesha-proxyUpgrade nfs-ganesha-rados-urls-debuginfoUpgrade librbd-develUpgrade libntirpcUpgrade ceph-commonUpgrade python3-rbd-debuginfoUpgrade libradosstriper1Upgrade ceph-radosgwUpgrade nfs-ganesha-rados-urlsUpgrade ceph-base-debuginfoUpgrade ceph-common-debuginfoUpgrade rbd-fuse-debuginfoUpgrade python-cephfsUpgrade libradosstriper1-debuginfoUpgrade ceph-mds-debuginfoUpgrade ceph-fuseUpgrade python-rgwUpgrade nfs-ganesha-cephUpgrade ansible-runner-serviceUpgrade nfs-ganesha-debuginfoUpgrade nfs-ganesha-ceph-debuginfoUpgrade ceph-osd-debuginfoUpgrade ceph-mgr-debuginfoUpgrade python-ceph-argparseUpgrade ceph-debuginfoUpgrade rbd-nbdUpgrade python3-rgw-debuginfoUpgrade libntirpc-debugsourceUpgrade rbd-mirror-debuginfoUpgrade librados-devel-debuginfoUpgrade ceph-ansibleUpgrade rbd-mirrorUpgrade nfs-ganesha-rados-graceUpgrade nfs-ganeshaUpgrade libcephfs-devel | Dec 11, 2020 | Nov 23, 2020 |
| Debian | — | Upgrade ceph | Jul 30, 2024 | Nov 23, 2020 |
| Gentoo Linux | — | Upgrade sys-cluster/ceph. | May 28, 2021 | Nov 23, 2020 |
| Redhat_linux | — | Upgrade rbd-nbdUpgrade ceph-common-debuginfoUpgrade python3-rbd-debuginfoUpgrade librbd-develUpgrade python-rgwUpgrade python-cephfsUpgrade nfs-ganesha-rados-urlsUpgrade libcephfs-develUpgrade nfs-ganeshaUpgrade nfs-ganesha-ceph-debuginfoUpgrade libntirpc-debugsourceUpgrade python-ceph-argparseUpgrade nfs-ganesha-rgw-debuginfoUpgrade ceph-debuginfoUpgrade ceph-radosgwUpgrade ceph-fuseUpgrade nfs-ganesha-rados-urls-debuginfoUpgrade ceph-fuse-debuginfoUpgrade nfs-ganesha-rados-grace-debuginfoUpgrade librados-devel-debuginfoUpgrade libntirpcUpgrade libradosstriper1-debuginfoUpgrade ceph-commonUpgrade nfs-ganesha-vfsUpgrade rbd-fuse-debuginfoUpgrade nfs-ganesha-debuginfoUpgrade librados-develUpgrade ceph-selinuxUpgrade rbd-mirrorUpgrade ceph-mds-debuginfoUpgrade nfs-ganesha-debugsourceUpgrade python3-rgwUpgrade nfs-ganesha-vfs-debuginfoUpgrade ceph-mdsUpgrade nfs-ganesha-proxy-debuginfoUpgrade python3-radosUpgrade ceph-ansibleUpgrade cockpit-ceph-installerUpgrade ceph-grafana-dashboardsUpgrade libradospp-develUpgrade nfs-ganesha-cephUpgrade librgw2-debuginfoUpgrade rbd-mirror-debuginfoUpgrade python3-rgw-debuginfoUpgrade ceph-base-debuginfoUpgrade ceph-debugsourceUpgrade python3-rbdUpgrade libntirpc-debuginfoUpgrade nfs-ganesha-selinuxUpgrade librgw-develUpgrade ceph-test-debuginfoUpgrade python3-cephfs-debuginfoUpgrade python3-ceph-argparseUpgrade libradosstriper1Upgrade ceph-mgr-debuginfoUpgrade ansible-runner-serviceUpgrade python3-cephfsUpgrade ceph-osd-debuginfoUpgrade python3-rados-debuginfoUpgrade nfs-ganesha-proxyUpgrade libcephfs2Upgrade libcephfs2-debuginfoUpgrade nfs-ganesha-rados-graceUpgrade librgw2Upgrade ceph-mon-debuginfoUpgrade nfs-ganesha-rgwUpgrade ceph-baseUpgrade rbd-nbd-debuginfoUpgrade ceph-radosgw-debuginfo | Dec 11, 2020 | Nov 23, 2020 |
| Suse | — | Upgrade ceph-fuseUpgrade ceph-prometheus-alertsUpgrade ceph-mgr-diskprediction-localUpgrade ceph-mdsUpgrade python3-ceph-argparseUpgrade ceph-mgr-diskprediction-cloudUpgrade rbd-mirrorUpgrade cephfs-shellUpgrade ceph-osdUpgrade libradosstriper-develUpgrade cephUpgrade ceph-baseUpgrade rados-objclass-develUpgrade ceph-commonUpgrade rbd-nbdUpgrade libcephfs-develUpgrade ceph-immutable-object-cacheUpgrade python3-cephfsUpgrade ceph-mgrUpgrade librgw2Upgrade python3-rbdUpgrade ceph-mgr-cephadmUpgrade ceph-testUpgrade libradospp-develUpgrade ceph-mgr-modules-coreUpgrade libradosstriper1Upgrade ceph-dashboard-e2eUpgrade ceph-resource-agentsUpgrade librgw-develUpgrade ceph-mgr-k8seventsUpgrade cephadmUpgrade ceph-mgr-sshUpgrade python3-radosUpgrade librados2Upgrade ceph-mgr-rookUpgrade librbd-develUpgrade ceph-monUpgrade rbd-fuseUpgrade ceph-mgr-dashboardUpgrade librbd1Upgrade librados-develUpgrade python3-rgwUpgrade ceph-grafana-dashboardsUpgrade ceph-radosgwUpgrade libcephfs2Upgrade python3-ceph-common | Nov 28, 2020 | Nov 23, 2020 |
| Ubuntu | — | Upgrade ceph-commonUpgrade ceph-baseUpgrade ceph | Jan 29, 2021 | Nov 23, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub