Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-14632

Опубликовано: 06 сент. 2018
Источник: nvd
CVSS3: 7.7
CVSS3: 7.7
CVSS2: 4
EPSS Низкий

Описание

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:*
Версия до 3.7 (включая)
cpe:2.3:a:redhat:openshift_container_platform:3.9:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:3.10:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:3.11:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:starcounter-jack:json-patch:-:*:*:*:*:*:*:*

EPSS

Процентиль: 65%
0.00486
Низкий

7.7 High

CVSS3

7.7 High

CVSS3

4 Medium

CVSS2

Дефекты

CWE-787
CWE-787

Связанные уязвимости

CVSS3: 7.7
ubuntu
больше 7 лет назад

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

CVSS3: 7.7
redhat
больше 7 лет назад

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

CVSS3: 7.7
github
больше 3 лет назад

JSON-Patch Out-of-bounds Write vulnerability

EPSS

Процентиль: 65%
0.00486
Низкий

7.7 High

CVSS3

7.7 High

CVSS3

4 Medium

CVSS2

Дефекты

CWE-787
CWE-787