CVE-2021-3509
Summary
| CVE | CVE-2021-3509 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-05-27 00:15:00 UTC |
| Updated | 2022-04-25 17:08:00 UTC |
| Description | A flaw was found in Red Hat Ceph Storage 4, in the Dashboard component. In response to CVE-2020-27839, the JWT token was moved from localStorage to an httpOnly cookie. However, token cookies are used in the body of the HTTP response for the documentation, which again makes it available to XSS.The greatest threat to the system is for confidentiality, integrity, and availability. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Application |
Redhat |
Ceph Storage |
4.0 |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| mgr/dashboard: fix cookie injection issue · ceph/ceph@7a1ca8d · GitHub |
MISC |
github.com |
|
| mgr/dashboard: fix cookie injection issue · ceph/ceph@af3fffa · GitHub |
MISC |
github.com |
|
| 1950116 – (CVE-2021-3509) CVE-2021-3509 ceph-dashboard: Cross-site scripting via token Cookie |
MISC |
bugzilla.redhat.com |
|
| ceph/docs.py at f1557e8f62d31883d3d34ae241a1a26af11d923f · ceph/ceph · GitHub |
MISC |
github.com |
|
| mgr/dashboard: fix cookie injection issue · ceph/ceph@adda853 · GitHub |
MISC |
github.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 180266 Debian Security Update for ceph (CVE-2021-3509)
- 198423 Ubuntu Security Notification for Ceph vulnerabilities (USN-4998-1)
- 198554 Ubuntu Security Notification for Ceph Vulnerabilities (USN-5128-1)
- 239428 Red Hat Update for Red Hat Ceph Storage 4.2 (RHSA-2021:2445)
- 501811 Alpine Linux Security Update for ceph
- 502829 Alpine Linux Security Update for ceph16
- 750099 SUSE Enterprise Linux Security Update for ceph (SUSE-SU-2021:1834-1)
- 750100 SUSE Enterprise Linux Security Update for ceph (SUSE-SU-2021:1835-1)
- 750174 OpenSUSE Security Update for ceph (openSUSE-SU-2021:0833-1)
- 750795 OpenSUSE Security Update for ceph (openSUSE-SU-2021:1834-1)