CVE-2022-3650
published 2023-01-17CVE-2022-3650: A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump…
PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.33%
24.8th percentile
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ceph | < ceph 16.2.10+ds-4 (bookworm) | ceph 16.2.10+ds-4 (bookworm) |
| msrc | azl3_ceph_16.2.10-3_on_azure_linux_3.0 | — | — |
| msrc | azl3_ceph_18.2.1-1_on_azure_linux_3.0 | — | — |
| msrc | azure_linux_3.0_arm | — | — |
| msrc | azure_linux_3.0_x64 | — | — |
| msrc | cbl2_ceph_16.2.10-7_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| redhat | ceph | — | — |
| redhat | ceph | — | — |
| redhat | ceph | >= 0 < 14.2.21-1+deb11u1 | 14.2.21-1+deb11u1 |
| redhat | ceph | >= 0 < 16.2.10+ds-4 | 16.2.10+ds-4 |
| redhat | ceph | >= 0 < 16.2.10+ds-4 | 16.2.10+ds-4 |
| redhat | ceph | >= 0 < 16.2.10+ds-4 | 16.2.10+ds-4 |
| redhat | ceph_storage | >= 0 < 12.2.13-0ubuntu0.18.04.11 | 12.2.13-0ubuntu0.18.04.11 |
| redhat | ceph_storage | >= 0 < 15.2.17-0ubuntu0.20.04.3 | 15.2.17-0ubuntu0.20.04.3 |
| redhat | ceph_storage | >= 0 < 17.2.5-0ubuntu0.22.04.3 | 17.2.5-0ubuntu0.22.04.3 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_cisco8.6HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
ceph vulnerabilities
osv·2023-05-09·CVSS 6.5
CVE-2021-3979 [MEDIUM] ceph vulnerabilities
ceph vulnerabilities
Mark Kirkwood discovered that Ceph incorrectly handled certain key lengths.
An attacker could possibly use this issue to create non-random encryption
keys. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
(CVE-2021-3979)
It was discovered that Ceph incorrectly handled the volumes plugin. An
attacker could possibly use this issue to obtain access to any share. This
issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10.
(CVE-2022-0670)
It was discovered that Ceph incorrectly handled crash dumps. A local
attacker could possibly use this issue to escalate privileges to root. This
issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10.
(CVE-2022-3650)
It was discovered that Ceph incorrectly handled URL processing on RG
OSV
CVE-2022-3650: A privilege escalation flaw was found in Ceph
osv·2023-01-17·CVSS 7.8
CVE-2022-3650 [HIGH] CVE-2022-3650: A privilege escalation flaw was found in Ceph
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.
GHSA
GHSA-4mjm-gg3q-674f: A privilege escalation flaw was found in Ceph
ghsa_unreviewed·2023-01-17
CVE-2022-3650 [HIGH] CWE-842 GHSA-4mjm-gg3q-674f: A privilege escalation flaw was found in Ceph
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.
Ubuntu
Ceph vulnerability
vendor_ubuntu·2023-08-16
CVE-2022-3650 Ceph vulnerability
Title: Ceph vulnerability
Summary: Ceph could be made to run programs as an administrator.
It was discovered that Ceph incorrectly handled crash dumps. A local
attacker could possibly use this issue to escalate privileges to root.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Ceph vulnerabilities
vendor_ubuntu·2023-05-09·CVSS 6.5
CVE-2021-3979 [MEDIUM] Ceph vulnerabilities
Title: Ceph vulnerabilities
Summary: Several security issues were fixed in Ceph.
Mark Kirkwood discovered that Ceph incorrectly handled certain key lengths.
An attacker could possibly use this issue to create non-random encryption
keys. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.
(CVE-2021-3979)
It was discovered that Ceph incorrectly handled the volumes plugin. An
attacker could possibly use this issue to obtain access to any share. This
issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10.
(CVE-2022-0670)
It was discovered that Ceph incorrectly handled crash dumps. A local
attacker could possibly use this issue to escalate privileges to root. This
issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 22.10.
(CVE-2022-3650)
It was
Microsoft
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump and dump privileged information.
vendor_msrc·2023-01-10·CVSS 7.8
CVE-2022-3650 [HIGH] CWE-842 A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump and dump privileged information.
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump and dump privileged information.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect thi
Red Hat
Ceph: ceph-crash.service allows local ceph user to root exploit
vendor_redhat·2022-10-25·CVSS 7.8
CVE-2022-3650 [HIGH] CWE-842 Ceph: ceph-crash.service allows local ceph user to root exploit
Ceph: ceph-crash.service allows local ceph user to root exploit
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information. This issue can lead to loss of confidentiality, integrity, and availability.
Statement: By sending a specially-crafted request, a locally authenticated attacker could exploit this vulnerability to gain elevated privileges as root. Access to Redhat Openshift Data Foundation container is very limited. Hence, the per-product impact for Red Hat Openshift Data Foundatio
Cisco
Cisco IOS XE Software for Catalyst Switches MPLS Denial of Service Vulnerability
vendor_cisco·2022-09-28·CVSS 8.6
CVE-2022-20870 [HIGH] CWE-130 Cisco IOS XE Software for Catalyst Switches MPLS Denial of Service Vulnerability
Cisco IOS XE Software for Catalyst Switches MPLS Denial of Service Vulnerability
A vulnerability in the egress MPLS packet processing function of Cisco IOS XE Software for Cisco Catalyst 3650, Catalyst 3850, and Catalyst 9000 Family Switches could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition.
This vulnerability is due to insufficient input validation of IPv4 traffic. An attacker could exploit this vulnerability by sending a malformed packet out of an affected MPLS-enabled interface. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.
Cisco has released software updates that address this vulnerability. There are no workarounds that addres
Debian
CVE-2022-3650: ceph - A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local...
vendor_debian·2022·CVSS 7.8
CVE-2022-3650 [HIGH] CVE-2022-3650: ceph - A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local...
A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.
Scope: local
bookworm: resolved (fixed in 16.2.10+ds-4)
bullseye: resolved (fixed in 14.2.21-1+deb11u1)
forky: resolved (fixed in 16.2.10+ds-4)
sid: resolved (fixed in 16.2.10+ds-4)
trixie: resolved (fixed in 16.2.10+ds-4)
Cisco
Cisco IOS XE Software for Catalyst Switches MPLS Denial of Service Vulnerability
vendor_cisco·CVSS 3.1
CVE-2022-20870 Cisco IOS XE Software for Catalyst Switches MPLS Denial of Service Vulnerability
CVE-2022-20870: Cisco IOS XE Software for Catalyst Switches MPLS Denial of Service Vulnerability
A vulnerability in the egress MPLS packet processing function of Cisco IOS XE Software for Cisco Catalyst 3650, Catalyst 3850, and Catalyst 9000 Family Switches could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient input validation of IPv4 traffic. An attacker could exploit this vulnerability by sending a malformed packet out of an affected MPLS-enabled interface. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.1
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://lists.fedoraproject.org/archives/list/[email protected]/message/OEVVWT5ZFLYCVZNDJTDX7R6RY2W7JHP5/https://seclists.org/oss-sec/2022/q4/41https://security.gentoo.org/glsa/202312-10https://lists.debian.org/debian-lts-announce/2025/09/msg00025.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/OEVVWT5ZFLYCVZNDJTDX7R6RY2W7JHP5/https://seclists.org/oss-sec/2022/q4/41https://security.gentoo.org/glsa/202312-10
2023-01-17
Published