CVE-2018-14632

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
06/09/2018
Last modified:
07/02/2023

Description

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:* 3.7 (including)
cpe:2.3:a:redhat:openshift_container_platform:3.9:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:3.10:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:3.11:*:*:*:*:*:*:*
cpe:2.3:a:starcounter-jack:json-patch:-:*:*:*:*:*:*:*