A flaw was found in the Cephx authentication protocol in versions before 15.2.6 and before 14.2.14, where it does not verify Ceph clients correctly and is then vulnerable to replay attacks in Nautilus. This flaw allows an attacker with access to the Ceph cluster network to authenticate with the Ceph service via a packet sniffer and perform actions allowed by the Ceph service. This issue is a reintroduction of CVE-2018-1128, affecting the msgr2 protocol. The msgr 2 protocol is used for all communication except older clients that do not support the msgr2 protocol. The msgr1 protocol is not affected. The highest threat from this vulnerability is to confidentiality, integrity, and system availability.
CVSS Details
- CVSS 3.1 Base Score: 8.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade ceph16Upgrade ceph | Aug 22, 2024 | Nov 23, 2020 |
| Arch Linux | — | Upgrade to the latest version of Arch Linux | Jul 11, 2025 | Nov 23, 2020 |
| Centos_linux | — | Upgrade python3-rgw-debuginfoUpgrade rbd-nbdUpgrade libntirpc-debugsourceUpgrade ceph-debuginfoUpgrade nfs-ganesha-rados-graceUpgrade rbd-mirrorUpgrade libcephfs-develUpgrade ceph-radosgwUpgrade python3-rbd-debuginfoUpgrade nfs-ganesha-rados-urlsUpgrade ceph-commonUpgrade libntirpcUpgrade libradosstriper1Upgrade nfs-ganeshaUpgrade nfs-ganesha-rados-urls-debuginfoUpgrade python-cephfsUpgrade ceph-mds-debuginfoUpgrade ceph-common-debuginfoUpgrade rbd-mirror-debuginfoUpgrade libradosstriper1-debuginfoUpgrade rbd-fuse-debuginfoUpgrade ceph-fuseUpgrade nfs-ganesha-debuginfoUpgrade ansible-runner-serviceUpgrade nfs-ganesha-ceph-debuginfoUpgrade ceph-ansibleUpgrade ceph-osd-debuginfoUpgrade nfs-ganesha-cephUpgrade ceph-base-debuginfoUpgrade python-rgwUpgrade nfs-ganesha-proxyUpgrade ceph-fuse-debuginfoUpgrade ceph-selinuxUpgrade librbd-develUpgrade librados-devel-debuginfoUpgrade python-ceph-argparseUpgrade ceph-mgr-debuginfoUpgrade ceph-mdsUpgrade ceph-baseUpgrade libcephfs2Upgrade ceph-radosgw-debuginfoUpgrade ceph-mon-debuginfoUpgrade librgw2Upgrade cockpit-ceph-installerUpgrade python3-rgwUpgrade nfs-ganesha-debugsourceUpgrade nfs-ganesha-rados-grace-debuginfoUpgrade ceph-grafana-dashboardsUpgrade nfs-ganesha-proxy-debuginfoUpgrade nfs-ganesha-vfs-debuginfoUpgrade ceph-debugsourceUpgrade ceph-test-debuginfoUpgrade librados-develUpgrade libcephfs2-debuginfoUpgrade nfs-ganesha-selinuxUpgrade python3-ceph-argparseUpgrade nfs-ganesha-rgw-debuginfoUpgrade python3-cephfsUpgrade nfs-ganesha-vfsUpgrade python3-radosUpgrade python3-rados-debuginfoUpgrade rbd-nbd-debuginfoUpgrade python3-rbdUpgrade libradospp-develUpgrade libntirpc-debuginfoUpgrade nfs-ganesha-rgwUpgrade python3-cephfs-debuginfoUpgrade librgw2-debuginfoUpgrade librgw-devel | Dec 11, 2020 | Nov 23, 2020 |
| Debian | — | Upgrade ceph | Jul 30, 2024 | Nov 23, 2020 |
| Gentoo Linux | — | Upgrade sys-cluster/ceph. | May 28, 2021 | Nov 23, 2020 |
| Redhat_linux | — | Upgrade python-rgwUpgrade nfs-ganesha-rados-urls-debuginfoUpgrade ceph-debuginfoUpgrade python3-rbd-debuginfoUpgrade ceph-radosgwUpgrade ceph-fuse-debuginfoUpgrade nfs-ganesha-vfsUpgrade ceph-commonUpgrade nfs-ganesha-ceph-debuginfoUpgrade nfs-ganesha-rados-urlsUpgrade libcephfs-develUpgrade ceph-fuseUpgrade nfs-ganesha-rados-grace-debuginfoUpgrade rbd-mirrorUpgrade libradosstriper1-debuginfoUpgrade nfs-ganesha-debuginfoUpgrade python-cephfsUpgrade rbd-nbdUpgrade libntirpc-debugsourceUpgrade ceph-common-debuginfoUpgrade nfs-ganesha-debugsourceUpgrade librbd-develUpgrade librados-develUpgrade nfs-ganeshaUpgrade ceph-selinuxUpgrade librados-devel-debuginfoUpgrade libntirpcUpgrade python-ceph-argparseUpgrade nfs-ganesha-rgw-debuginfoUpgrade rbd-fuse-debuginfoUpgrade ceph-mds-debuginfoUpgrade python3-rgw-debuginfoUpgrade ceph-grafana-dashboardsUpgrade nfs-ganesha-rados-graceUpgrade python3-rbdUpgrade librgw2Upgrade nfs-ganesha-proxyUpgrade python3-ceph-argparseUpgrade ansible-runner-serviceUpgrade ceph-osd-debuginfoUpgrade python3-cephfsUpgrade cockpit-ceph-installerUpgrade ceph-radosgw-debuginfoUpgrade ceph-mgr-debuginfoUpgrade libradospp-develUpgrade python3-rgwUpgrade ceph-test-debuginfoUpgrade librgw-develUpgrade libcephfs2Upgrade python3-rados-debuginfoUpgrade python3-radosUpgrade nfs-ganesha-vfs-debuginfoUpgrade libcephfs2-debuginfoUpgrade python3-cephfs-debuginfoUpgrade librgw2-debuginfoUpgrade rbd-nbd-debuginfoUpgrade libntirpc-debuginfoUpgrade ceph-debugsourceUpgrade rbd-mirror-debuginfoUpgrade nfs-ganesha-proxy-debuginfoUpgrade libradosstriper1Upgrade ceph-baseUpgrade nfs-ganesha-selinuxUpgrade ceph-mdsUpgrade nfs-ganesha-rgwUpgrade ceph-ansibleUpgrade nfs-ganesha-cephUpgrade ceph-base-debuginfoUpgrade ceph-mon-debuginfo | Dec 11, 2020 | Nov 23, 2020 |
| Suse | — | Upgrade ceph-mgr-sshUpgrade librbd1Upgrade ceph-monUpgrade ceph-mgr-rookUpgrade python3-ceph-commonUpgrade librados2Upgrade python3-radosUpgrade rbd-fuseUpgrade libcephfs2Upgrade librgw-develUpgrade ceph-mgr-k8seventsUpgrade python3-rgwUpgrade ceph-grafana-dashboardsUpgrade ceph-mgr-dashboardUpgrade ceph-radosgwUpgrade librados-develUpgrade librbd-develUpgrade cephadmUpgrade ceph-osdUpgrade cephfs-shellUpgrade ceph-prometheus-alertsUpgrade ceph-mgr-diskprediction-localUpgrade libradosstriper-develUpgrade ceph-fuseUpgrade ceph-baseUpgrade python3-ceph-argparseUpgrade ceph-resource-agentsUpgrade ceph-mgr-diskprediction-cloudUpgrade cephUpgrade libradosstriper1Upgrade ceph-testUpgrade ceph-mdsUpgrade ceph-dashboard-e2eUpgrade ceph-mgr-cephadmUpgrade ceph-mgrUpgrade libcephfs-develUpgrade ceph-mgr-modules-coreUpgrade python3-cephfsUpgrade rados-objclass-develUpgrade rbd-mirrorUpgrade ceph-commonUpgrade librgw2Upgrade rbd-nbdUpgrade python3-rbdUpgrade ceph-immutable-object-cacheUpgrade libradospp-devel | Nov 28, 2020 | Nov 23, 2020 |
| Ubuntu | — | Upgrade ceph-baseUpgrade ceph-commonUpgrade ceph | Jan 29, 2021 | Nov 23, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub