CVE-2018-10905
published 2018-07-24CVE-2018-10905: CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms. An attacker with access to an…
PriorityP338high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.47%
37.9th percentile
CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms. An attacker with access to an unprivileged local shell could use this flaw to execute commands as a high privileged user.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| linux | linux_kernel | >= 0 < 4.4.0-165.193 | 4.4.0-165.193 |
| redhat | cloudforms | — | — |
| redhat | cloudforms | — | — |
| redhat | cloudforms_management_engine | — | — |
| redhat | cloudforms_management_engine | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
cfme: Improper access control in dRuby allows local users to execute arbitrary commands as root
vendor_redhat·2018-07-20·CVSS 7.8
CVE-2018-10905 [HIGH] CWE-284 cfme: Improper access control in dRuby allows local users to execute arbitrary commands as root
cfme: Improper access control in dRuby allows local users to execute arbitrary commands as root
CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms. An attacker with access to an unprivileged local shell could use this flaw to execute commands as a high privileged user.
CloudForms Management Engine has a vulnerability that allows local users to execute arbitrary commands as root. An attacker with SSH access to the system can use the dRuby (DRb) module installed on the system to execute arbitrary shell commands using `instance_eval()`.
Mitigation: Administrators of the CloudForms appliance can filter local packages going to the port where MIQ Server is listening, by using the following iptables command:
# iptables -I OUTP
GHSA
GHSA-jjjj-c3mp-q822: CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms
ghsa_unreviewed·2022-05-13
CVE-2018-10905 [HIGH] CWE-78 GHSA-jjjj-c3mp-q822: CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms
CloudForms Management Engine (cfme) is vulnerable to an improper security setting in the dRuby component of CloudForms. An attacker with access to an unprivileged local shell could use this flaw to execute commands as a high privileged user.
OSV
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
osv·2019-10-01·CVSS 7.8
CVE-2016-10905 linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
linux, linux-aws, linux-kvm, linux-raspi2, linux-snapdragon vulnerabilities
It was discovered that a race condition existed in the GFS2 file system in
the Linux kernel. A local attacker could possibly use this to cause a
denial of service (system crash). (CVE-2016-10905)
It was discovered that the IPv6 implementation in the Linux kernel did not
properly validate socket options in some situations. A local attacker could
use this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2017-18509)
It was discovered that the USB gadget Midi driver in the Linux kernel
contained a double-free vulnerability when handling certain error
conditions. A local attacker could use this to cause a denial of service
(system crash). (CVE-2018-20961)
It was discovered that th
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2018:2561https://access.redhat.com/errata/RHSA-2018:2745https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10905https://access.redhat.com/errata/RHSA-2018:2561https://access.redhat.com/errata/RHSA-2018:2745https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10905
2018-07-24
Published