targetcli-fb@2.1.51 vulnerabilities

An administration shell for RTS storage targets.

Direct Vulnerabilities

Known vulnerabilities in the targetcli-fb package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Insecure Permissions

targetcli-fb is a command shell for managing Linux LIO kernel target.

Affected versions of this package are vulnerable to Insecure Permissions. It has weak permissions for /etc/target (and for the backup directory and backup files).

How to fix Insecure Permissions?

A fix was pushed into the master branch but not yet published.

[0,)
  • H
Privilege Escalation

targetcli-fb is a command shell for managing Linux LIO kernel target.

Affected versions of this package are vulnerable to Privilege Escalation. If a system enables the targetclid socket, a local attacker can use this flaw to modify the iSCSI configuration and escalate their privileges to root.

How to fix Privilege Escalation?

A fix was pushed into the master branch but not yet published.

[0,)