Lucene search

K
githubGitHub Advisory DatabaseGHSA-RF3M-MHV7-X39F
HistoryDec 20, 2021 - 4:58 p.m.

Denial of Service in OpenShift Origin

2021-12-2016:58:22
CWE-20
GitHub Advisory Database
github.com
21
openshift origin
denial of service
api server
remote attackers
json data
software

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

EPSS

0.003

Percentile

71.8%

The API server in OpenShift Origin 1.0.5 allows remote attackers to cause a denial of service (master process crash) via crafted JSON data

Affected configurations

Vulners
Node
openshiftoriginRange<1.0.6
VendorProductVersionCPE
openshiftorigin*cpe:2.3:a:openshift:origin:*:*:*:*:*:*:*:*

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

EPSS

0.003

Percentile

71.8%