CVE-2026-39944: Ceph: CephX AES Authentication error

Published Aug 27, 2026
·
Updated

Ceph is an open-source distributed storage platform providing object, block, and file storage. In versions prior to 20.2.4 and 19.2.6, the RADOS Gateway (RGW) protects STS session tokens with an AES-128-CBC handler that provides no message authentication, allowing an attacker who holds any valid STS token to tamper with it undetected and escalate to full RGW administrative access. Because the ciphertext is unauthenticated, the attacker can perform a CBC bit-flip on the accttype, permtype, and isadmin fields of their own token, and a forged isadmin value triggers a global administrative override that bypasses all capability checks. The attack is reachable remotely over the RGW S3 endpoint and is a self-contained modification of a token the attacker already possesses, requiring no encryption oracle and no network observation. It requires only a single valid STS token, which need not carry any elevated privileges, with STS enabled. This issue is fixed in versions 20.2.4 and 19.2.6.

Affected Software

1 affected component
Ceph<20.2.4, <19.2.6

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Ceph RADOS Gateway (RGW) to a version that resolves this vulnerability.

    Fixed in 20.2.4
  2. Upgrade

    Upgrade Ceph RADOS Gateway (RGW) to a version that resolves this vulnerability.

    Fixed in 19.2.6

Event History

Aug 27, 2026
CVE Published
via MITRE·08:47 PM
Data Sourced
via MITRE·08:47 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Who is exposed to this issue?

Ceph deployments running an affected version with RADOS Gateway STS enabled are exposed through the RGW S3 endpoint. An attacker must possess any valid STS session token; the token does not need elevated privileges.

2

Does exploitation require intercepting traffic or access to an encryption service?

No. The attack consists of modifying a valid STS token held by the attacker using CBC bit flips. It requires no network observation and no encryption oracle.

3

What access can an attacker gain?

An attacker can alter token fields including is_admin. A forged is_admin value triggers a global administrative override that bypasses capability checks, resulting in full RGW administrative access.

4

What should be prioritized for remediation?

Upgrade Ceph to 20.2.4 or 19.2.6. If an immediate upgrade is not possible, the provided information identifies STS-enabled RGW deployments as the affected condition.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203