Skip to main content

Placement of User into Incorrect Group

CVE-2022-3650

Severity High
Score 7.8/10

Summary

A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.

  • LOW
  • LOCAL
  • HIGH
  • UNCHANGED
  • NONE
  • LOW
  • HIGH
  • HIGH

CWE-842 - Placement of User into Incorrect Group

The software or the administrator places a user into an incorrect group.

References

Advisory Timeline

  • Published