vulnerability
Red Hat OpenShift: CVE-2018-14632: atomic-openshift: oc patch with json causes masterapi service crash
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:L/Au:S/C:N/I:N/A:P) | Sep 6, 2018 | Sep 27, 2018 | Apr 14, 2025 |
Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:P)
Published
Sep 6, 2018
Added
Sep 27, 2018
Modified
Apr 14, 2025
Description
An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.
Solution
linuxrpm-upgrade-atomic-openshift

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.