Bugzilla – Bug 997025
VUL-0: CVE-2016-7031: ceph-radosgw: anonymous user authorization bypass
Last modified: 2020-06-15 13:27:15 UTC
rh#1372446 Description of problem: An anonymous S3 user may be able to (incorrectly) list the contents of a bucket which has an authenticated_users=read ACL. Version-Release number of selected component (if applicable): 1.3.x Additional info: This issue corresponds to upstream tracker issue http://tracker.ceph.com/issues/13207 Fixed on master in https://github.com/ceph/ceph/pull/6057 References: https://bugzilla.redhat.com/show_bug.cgi?id=1372446 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-7031
bugbot adjusting priority
Staged hammer backport: * http://tracker.ceph.com/issues/17150 * https://github.com/ceph/ceph/pull/11045
Upstream hammer backport just merged; will be in 0.94.10 release. After that release happens, we'll get it into SES2.1 via a maintenance update.
This bug is only present in SES2.1, which went out of maintenance on March 1, 2017.