Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38367
HistoryDec 08, 2022 - 3:54 a.m.

Denial Of Service (DoS)

2022-12-0803:54:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
containerd vulnerability denial exhausted memory crash application attack vulnerability server software command httpstream.

EPSS

0.001

Percentile

41.0%

github.com/containerd/containerd is vulnerable to denial of service. The vulnerability exists in the CRI stream server of httpstream.go due to exhausted memory on the host, which allows an attacker to cause an application crash via issuing a faulty command.