vulnerability

SUSE: CVE-2020-25678: SUSE Linux Security Advisory

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Jan 8, 2021
Added
Apr 13, 2021
Modified
Oct 22, 2021

Description

A flaw was found in ceph in versions prior to 16.y.z where ceph stores mgr module passwords in clear text. This can be found by searching the mgr logs for grafana and dashboard, with passwords visible.

Solutions

suse-upgrade-cephsuse-upgrade-ceph-basesuse-upgrade-ceph-commonsuse-upgrade-ceph-fusesuse-upgrade-ceph-grafana-dashboardssuse-upgrade-ceph-immutable-object-cachesuse-upgrade-ceph-mdssuse-upgrade-ceph-mgrsuse-upgrade-ceph-mgr-cephadmsuse-upgrade-ceph-mgr-dashboardsuse-upgrade-ceph-mgr-diskprediction-cloudsuse-upgrade-ceph-mgr-diskprediction-localsuse-upgrade-ceph-mgr-k8seventssuse-upgrade-ceph-mgr-modules-coresuse-upgrade-ceph-mgr-rooksuse-upgrade-ceph-monsuse-upgrade-ceph-osdsuse-upgrade-ceph-prometheus-alertssuse-upgrade-ceph-radosgwsuse-upgrade-ceph-testsuse-upgrade-cephadmsuse-upgrade-cephfs-shellsuse-upgrade-libcephfs-develsuse-upgrade-libcephfs2suse-upgrade-librados-develsuse-upgrade-librados2suse-upgrade-libradospp-develsuse-upgrade-librbd-develsuse-upgrade-librbd1suse-upgrade-librgw-develsuse-upgrade-librgw2suse-upgrade-python3-ceph-argparsesuse-upgrade-python3-ceph-commonsuse-upgrade-python3-cephfssuse-upgrade-python3-radossuse-upgrade-python3-rbdsuse-upgrade-python3-rgwsuse-upgrade-rados-objclass-develsuse-upgrade-rbd-fusesuse-upgrade-rbd-mirrorsuse-upgrade-rbd-nbd
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.