FlawAtlas
Search the atlas
CVE-2015-3010 Low

CVE-2015-3010

ceph-deploy before 1.5.23 uses weak permissions (644) for ceph/ceph.client.admin.keyring, which allows local users to obtain sensitive information by reading the file.

Exploit probability 0.4%
Published June 16, 2015
Required by Not available
Last source change June 10, 2026

02 / AFFECTED SOFTWARE

Affected packages

PyPI ceph-deploy

77 explicit affected versions

PyPI ceph-deploy

36 explicit affected versions

04 / EVIDENCE

Source records

Open Source Vulnerabilities PYSEC-2015-2

ceph-deploy before 1.5.23 uses weak permissions (644) for ceph/ceph.client.admin.keyring, which allows local users to obtain sensitive information by reading the file.

View original source
Open Source Vulnerabilities GHSA-9w4f-3v37-6f75

ceph-deploy before 1.5.23 uses weak permissions (644) for `ceph/ceph.client.admin.keyring`, which allows local users to obtain sensitive information by reading the file.

View original source

05 / REFERENCES

Further evidence