CVE-2018-14632

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:openshift_container_platform:3.9:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:3.11:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:3.10:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:json-patch_project:json-patch:-:*:*:*:*:*:*:go

Information

Published : 2018-09-06 14:29

Updated : 2019-10-09 23:35


NVD link : CVE-2018-14632

Mitre link : CVE-2018-14632


JSON object : View

Products Affected

redhat

  • openshift_container_platform

json-patch_project

  • json-patch
CWE
CWE-787

Out-of-bounds Write