Lucene search

K
redhatcveRedhat.comRH:CVE-2018-16846
HistoryJan 14, 2019 - 3:51 p.m.

CVE-2018-16846

2019-01-1415:51:31
redhat.com
access.redhat.com
10

0.004 Low

EPSS

Percentile

74.6%

A flaw was found in the way the ListBucket function max-keys has no defined limit in the RGW codebase. An authenticated ceph RGW user can cause a denial of service attack against OMAPs holding bucked indices.