SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2018-14660

MEDIUM · CVSS 6.5 EPSS 2.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-11-01 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.

CVE
CVE-2018-14660
Severity
MEDIUM
CVSS
6.5
EPSS
2.51%

Original NVD Description

A flaw was found in glusterfs server through versions 4.1.4 and 3.1.2 which allowed repeated usage of GF_META_LOCK_KEY xattr. A remote, authenticated attacker could use this flaw to create multiple locks for single inode by using setxattr repetitively resulting in memory exhaustion of glusterfs server node.

Related CVEs

Other vulnerabilities affecting the same vendor(s)