← Vulnerability feed

Vulnerability record · CVE-2024-47866 · published 12 November 2025

CVE-2024-47866: Redhat ceph improper input validation vulnerability

Redhat · Ceph

Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object and specifying an empty string as its content leads to the RGW daemon crashing, resulting in a DoS attack. As of time of publication, no known patched versions exist.

7.5 CVSS 3.1 High EPSS 0.45% · top 63.4% CWE-20 · Improper input validation
7.5CVSS 3.1 base score
0.45%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
3References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

Ceph is a distributed object, block, and file storage platform. In versions up to and including 19.2.3, using the argument `x-amz-copy-source` to put an object and specifying an empty string as its content leads to the RGW daemon crashing, resulting in a DoS attack. As of time of publication, no known patched versions exist.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-47866 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2020-25660Redhat ceph authentication bypass by capture-replay vulnerabilityA flaw was found in the Cephx authentication protocol in versions before 15.2.6 and before 14.2.14, where it does not verify Ceph clients correctly a…EPSS 1.0%7.8CVE-2022-3650Redhat ceph vulnerabilityA privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump,…EPSS 0.33%7.5CVE-2018-16889Redhat ceph sensitive information in log file vulnerabilityCeph does not properly sanitize encryption keys in debug logging for v4 auth. This results in the leaking of encryption key information in log files …EPSS 0.54%7.5CVE-2018-1128Redhat ceph storage authentication bypass by capture-replay vulnerabilityIt was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access…EPSS 1.4%7.5CVE-2018-7262Redhat ceph null pointer dereference vulnerabilityIn Ceph before 12.2.3 and 13.x through 13.0.1, the rgw_civetweb.cc RGWCivetWeb::init_env function in radosgw doesn't handle malformed HTTP headers pr…EPSS 2.9%7.1CVE-2020-27781Redhat ceph insufficiently protected credentials vulnerabilityUser credentials can be manipulated and stolen by Native CephFS consumers of OpenStack Manila, resulting in potential privilege escalation. An Open S…EPSS 0.31%6.5CVE-2021-3524Redhat ceph improper input validation vulnerabilityA flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway) in versions before 14.2.21. The vulnerability is related to the injection …EPSS 1.6%6.5CVE-2018-16846Redhat ceph allocation without limits vulnerabilityIt was found in Ceph versions before 13.2.4 that authenticated ceph RGW users can cause a denial of service against OMAPs holding bucket indices.EPSS 2.1%

Source: NIST National Vulnerability Database (record CVE-2024-47866), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.