vulnerability
Red Hat: CVE-2020-25678: Important: Red Hat Ceph Storage security, bug fix, and enhancement Update (RHSA-2021:1452)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:N/C:P/I:N/A:N) | Jan 8, 2021 | Apr 30, 2021 | Jul 9, 2025 |
Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Jan 8, 2021
Added
Apr 30, 2021
Modified
Jul 9, 2025
Description
A flaw was found in ceph in versions prior to 16.y.z where ceph stores mgr module passwords in clear text. This can be found by searching the mgr logs for grafana and dashboard, with passwords visible.
Solutions
no-fix-redhat-rpm-packageredhat-upgrade-ceph-ansibleredhat-upgrade-ceph-baseredhat-upgrade-ceph-base-debuginforedhat-upgrade-ceph-commonredhat-upgrade-ceph-common-debuginforedhat-upgrade-ceph-debuginforedhat-upgrade-ceph-debugsourceredhat-upgrade-ceph-fuseredhat-upgrade-ceph-fuse-debuginforedhat-upgrade-ceph-grafana-dashboardsredhat-upgrade-ceph-mdsredhat-upgrade-ceph-mds-debuginforedhat-upgrade-ceph-mgr-debuginforedhat-upgrade-ceph-mon-debuginforedhat-upgrade-ceph-osd-debuginforedhat-upgrade-ceph-radosgwredhat-upgrade-ceph-radosgw-debuginforedhat-upgrade-ceph-selinuxredhat-upgrade-ceph-test-debuginforedhat-upgrade-gperftools-debugsourceredhat-upgrade-gperftools-libsredhat-upgrade-gperftools-libs-debuginforedhat-upgrade-libcephfs-develredhat-upgrade-libcephfs2redhat-upgrade-libcephfs2-debuginforedhat-upgrade-librados-develredhat-upgrade-librados-devel-debuginforedhat-upgrade-libradospp-develredhat-upgrade-libradosstriper1redhat-upgrade-libradosstriper1-debuginforedhat-upgrade-librbd-develredhat-upgrade-librgw-develredhat-upgrade-librgw2redhat-upgrade-librgw2-debuginforedhat-upgrade-libtcmuredhat-upgrade-python-ceph-argparseredhat-upgrade-python-cephfsredhat-upgrade-python-rgwredhat-upgrade-python3-ceph-argparseredhat-upgrade-python3-cephfsredhat-upgrade-python3-cephfs-debuginforedhat-upgrade-python3-radosredhat-upgrade-python3-rados-debuginforedhat-upgrade-python3-rbdredhat-upgrade-python3-rbd-debuginforedhat-upgrade-python3-rgwredhat-upgrade-python3-rgw-debuginforedhat-upgrade-rbd-fuse-debuginforedhat-upgrade-rbd-mirrorredhat-upgrade-rbd-mirror-debuginforedhat-upgrade-rbd-nbdredhat-upgrade-rbd-nbd-debuginforedhat-upgrade-tcmu-runner
References
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.