RHSA-2018:1137: Important: glusterfs security update
GlusterFS is a key building block of Red Hat Gluster Storage. It is based on a stackable user-space design and can deliver exceptional performance for diverse workloads. GlusterFS aggregates various storage servers over network interconnections into one large, parallel network file system.<br>Security Fix(es):<br><li> glusterfs: Privilege escalation via glustersharedstorage when snapshot scheduling is enabled (CVE-2018-1088)</li> For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.<br>This issue was discovered by John Strunk (Red Hat).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2018:1137?
The severity of RHSA-2018:1137 is classified as important.
How do I fix RHSA-2018:1137?
To resolve RHSA-2018:1137, you should update the affected packages to the latest version that supersedes 3.8.4-54.7.el6.
What packages are affected by RHSA-2018:1137?
The affected packages by RHSA-2018:1137 include glusterfs, glusterfs-api, and glusterfs-client-xlators, among others.
What type of vulnerabilities are addressed in RHSA-2018:1137?
RHSA-2018:1137 addresses vulnerabilities related to GlusterFS that could potentially lead to denial of service.
Is RHSA-2018:1137 applicable to multi-architecture systems?
Yes, RHSA-2018:1137 applies to multiple architectures including x86_64.