CVE-2015-1795
Unknown
Last modified
CVE-2015-1795 is a vulnerability of currently unknown severity. Red Hat Gluster Storage RPM Package 3.2 allows local users to gain privileges and execute arbitrary code as root..
Description
Red Hat Gluster Storage RPM Package 3.2 allows local users to gain privileges and execute arbitrary code as root.
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Gluster Storage | 3.2 |
References
- http://rhn.redhat.com/errata/RHSA-2017-0484.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0486.htmlVendor Advisory
- http://www.securityfocus.com/bid/99311Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1038128Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=1200927Issue Tracking, Third Party Advisory, VDB Entry
- http://rhn.redhat.com/errata/RHSA-2017-0484.htmlVendor Advisory
- http://rhn.redhat.com/errata/RHSA-2017-0486.htmlVendor Advisory
- http://www.securityfocus.com/bid/99311Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1038128Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=1200927Issue Tracking, Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-1795?
Red Hat Gluster Storage RPM Package 3.2 allows local users to gain privileges and execute arbitrary code as root.
How severe is CVE-2015-1795?
Severity scoring for CVE-2015-1795 is pending analysis.
How do I fix CVE-2015-1795?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2015
- CVE-2015-1789The X509_cmp_time function in crypto/x509/x509_vfy.c in Open…
- CVE-2015-1790The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in O…
- CVE-2015-1791Race condition in the ssl3_get_new_session_ticket function i…
- CVE-2015-1792The do_free_upto function in crypto/cms/cms_smime.c in OpenS…
- CVE-2015-1793The X509_verify_cert function in crypto/x509/x509_vfy.c in O…
- CVE-2015-1794The ssl3_get_key_exchange function in ssl/s3_clnt.c in OpenS…
- CVE-2015-1796The PKIX trust engines in Shibboleth Identity Provider befor…
- CVE-2015-1797Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2015-1798The symmetric-key feature in the receive function in ntp_pro…
- CVE-2015-1799The symmetric-key feature in the receive function in ntp_pro…
- CVE-2015-1800The samsung_extdisp driver in the Samsung S4 (GT-I9500) I950…
- CVE-2015-1801The samsung_extdisp driver in the Samsung S4 (GT-I9500) I950…
Are you affected by CVE-2015-1795?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
