vulnerability

Red Hat OpenShift: CVE-2018-14632: atomic-openshift: oc patch with json causes masterapi service crash

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:P)
Published
Sep 6, 2018
Added
Sep 27, 2018
Modified
Apr 14, 2025

Description

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

Solution

linuxrpm-upgrade-atomic-openshift
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.