CVE-2018-14632 PUBLISHED

An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.

EPSS 0.51% · 66.2th percentile

Risk Scores

EPSS Score
0.51%
66.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSgolang-github-evanphx-json-patch0, 0.0~git20150402.0.766277e-1
Ubuntu:20.04:LTSgolang-github-evanphx-json-patch4.6.0-1, 0, 0.0~git20150402.0.766277e-1
Ubuntu:24.04:LTSgolang-github-evanphx-json-patch5.2.0-2, 5.7.0-1, 0
Ubuntu:22.04:LTSgolang-github-evanphx-json-patch0, 5.2.0-1
Ubuntu:25.10golang-github-evanphx-json-patch0, 5.7.0-1
Ubuntu:18.04:LTSgolang-github-evanphx-json-patch0, 0.0~git20150402.0.766277e-1

Timeline

References

Open in Interactive Console →