CVE-2024-47866
published 2025-11-12CVE-2024-47866: Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object…
PriorityP344high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.44%
35.7th percentile
Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object and specifying an empty string as its content leads to the RGW daemon crashing, resulting in a DoS attack. As of time of publication, no known patched versions exist.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ceph | ceph | <= 19.2.3 | — |
| ceph | ceph | >= 0 < 14.2.21-1+deb11u2 | 14.2.21-1+deb11u2 |
| ceph | ceph | >= 0 < 18.2.7+ds-1.1 | 18.2.7+ds-1.1 |
| debian | ceph | < ceph 14.2.21-1+deb11u2 (bullseye) | ceph 14.2.21-1+deb11u2 (bullseye) |
| msrc | azl3_ceph_18.2.2-11_on_azure_linux_3.0 | — | — |
| msrc | cbl2_ceph_16.2.10-10_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_ceph_16.2.10-11_on_cbl_mariner_2.0 | — | — |
| redhat | ceph | <= 19.2.3 | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Ceph vulnerabilities
vendor_ubuntu·2026-02-24·CVSS 7.5
CVE-2024-47866 [HIGH] Ceph vulnerabilities
Title: Ceph vulnerabilities
Summary: Several security issues were fixed in Ceph.
Martin Schobert discovered that Ceph did not properly verify SSL
certificates when using Pybind for secure mail connections, which could
result in accepting invalid certificates. An attacker could possibly use
this issue to perform an intermediary attack and access mail server
credentials or message contents. This issue only affected Ubuntu 20.04 LTS,
Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and Ubuntu 25.10. (CVE-2024-31884)
It was discovered that Ceph's RADOS Gateway (RGW) did not properly handle
certain header parameters. An attacker could possibly use this issue to
cause the RGW service to crash, leading to a denial of service.
(CVE-2024-47866)
Instructions: In general, a standard system update will make all
Red Hat
rgw: RGW DoS attack with empty HTTP header in S3 object copy
vendor_redhat·2025-11-12·CVSS 7.5
CVE-2024-47866 [HIGH] CWE-20 rgw: RGW DoS attack with empty HTTP header in S3 object copy
rgw: RGW DoS attack with empty HTTP header in S3 object copy
Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object and specifying an empty string as its content leads to the RGW daemon crashing, resulting in a DoS attack. As of time of publication, no known patched versions exist.
A flaw was found in Ceph RGW. Using the x-amz-copy-source header to upload an empty object will cause Ceph RGW to crash, leading to availability issues.
Mitigation: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Package:
Microsoft
RGW DoS attack with empty HTTP header in S3 object copy
vendor_msrc·2025-11-11·CVSS 7.5
CVE-2024-47866 [HIGH] CWE-20 RGW DoS attack with empty HTTP header in S3 object copy
RGW DoS attack with empty HTTP header in S3 object copy
Mariner: Mariner
GitHub_M: GitHub_M
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://learn.microsoft.com/en-us/azure/azure-linux/tutorial-azure-linux-upgrade
Debian
CVE-2024-47866: ceph - Ceph is a distributed object, block, and file storage platform. In versions up t...
vendor_debian·2024·CVSS 7.5
CVE-2024-47866 [HIGH] CVE-2024-47866: ceph - Ceph is a distributed object, block, and file storage platform. In versions up t...
Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object and specifying an empty string as its content leads to the RGW daemon crashing, resulting in a DoS attack. As of time of publication, no known patched versions exist.
Scope: local
bookworm: open
bullseye: resolved (fixed in 14.2.21-1+deb11u2)
forky: resolved (fixed in 18.2.7+ds-1.1)
sid: resolved (fixed in 18.2.7+ds-1.1)
trixie: open
OSV
ceph vulnerabilities
osv·2026-02-24·CVSS 7.5
CVE-2024-31884 [HIGH] ceph vulnerabilities
ceph vulnerabilities
Martin Schobert discovered that Ceph did not properly verify SSL
certificates when using Pybind for secure mail connections, which could
result in accepting invalid certificates. An attacker could possibly use
this issue to perform an intermediary attack and access mail server
credentials or message contents. This issue only affected Ubuntu 20.04 LTS,
Ubuntu 22.04 LTS, Ubuntu 24.04 LTS and Ubuntu 25.10. (CVE-2024-31884)
It was discovered that Ceph's RADOS Gateway (RGW) did not properly handle
certain header parameters. An attacker could possibly use this issue to
cause the RGW service to crash, leading to a denial of service.
(CVE-2024-47866)
OSV
CVE-2024-47866: Ceph is a distributed object, block, and file storage platform
osv·2025-11-12·CVSS 7.5
CVE-2024-47866 [HIGH] CVE-2024-47866: Ceph is a distributed object, block, and file storage platform
Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object and specifying an empty string as its content leads to the RGW daemon crashing, resulting in a DoS attack. As of time of publication, no known patched versions exist.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-11-12
Published