CVE-2023-26253: High severity centos glusterfs vulnerability
Published Feb 21, 2023
·Updated
In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read.
Affected Software
1 affected component
gluster GlusterFS=11.0
Remediation
Patch Available
Event History
Feb 21, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Gluster GlusterFS vulnerability?
The vulnerability ID for this Gluster GlusterFS vulnerability is CVE-2023-26253.
2
What is the severity of CVE-2023-26253?
The severity of CVE-2023-26253 is high.
3
What is the affected software for CVE-2023-26253?
The affected software for CVE-2023-26253 is Gluster GlusterFS version 11.0.
4
What is the CWE ID for CVE-2023-26253?
The CWE ID for CVE-2023-26253 is 125.
5
Are there any references for CVE-2023-26253?
Yes, there are references available for CVE-2023-26253. You can find them at the following links: [Link 1](https://github.com/gluster/glusterfs/issues/3954), [Link 2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UE6K2DXP4QZVKP32Z7BSYDSRBL4H7JSE/).