CVE-2018-14632

Source
https://nvd.nist.gov/vuln/detail/CVE-2018-14632
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2018-14632.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2018-14632
Aliases
Related
Withdrawn
2024-05-08T06:50:10.170344Z
Published
2018-09-06T14:29:00Z
Modified
2023-11-28T15:51:07.443451Z
Severity
  • 7.7 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

References

Affected packages

Git / github.com/evanphx/json-patch

Affected ranges

Type
GIT
Repo
https://github.com/evanphx/json-patch
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

v3.*

v3.0.0