ZeroHour

CVE-2019-10222

CVSS 3.1
7.5 high
EPSS
4%p91
Published
()
Modified
Description

A flaw was found in the Ceph RGW configuration with Beast as the front end handling client requests. An unauthenticated attacker could crash the Ceph RGW server by sending valid HTTP headers and terminating the connection, resulting in a remote denial of service for Ceph RGW clients.

Vendors
cephredhatfedoraproject
Products
ceph, ceph storage, fedora
Weakness
CWE-755
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.