Lucene search

K
cvelistRedhatCVELIST:CVE-2020-1702
HistoryMay 27, 2021 - 7:45 p.m.

CVE-2020-1702

2021-05-2719:45:08
CWE-400
redhat
www.cve.org
6
container image
memory consumption
red hat enterprise linux
openshift container platform
vulnerability

AI Score

5.1

Confidence

High

EPSS

0.001

Percentile

22.8%

A malicious container image can consume an unbounded amount of memory when being pulled to a container runtime host, such as Red Hat Enterprise Linux using podman, or OpenShift Container Platform. An attacker can use this flaw to trick a user, with privileges to pull container images, into crashing the process responsible for pulling the image. This flaw affects containers-image versions before 5.2.0.

CNA Affected

[
  {
    "product": "containers/image",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "containers-image 5.2.0"
      }
    ]
  }
]

AI Score

5.1

Confidence

High

EPSS

0.001

Percentile

22.8%