ZeroHour

CVE-2023-0056

CVSS 3.1
6.5 medium
EPSS
2%p78
Published
()
Modified
Description

An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated remote attacker to run a specially crafted malicious server in an OpenShift cluster. The biggest impact is to availability.

Vendors
haproxyredhatfedoraproject
Products
haproxy, ceph storage, software collections, openshift container platform, openshift container platform for ibm linuxone, openshift container platform for power, openshift container platform ibm z systems, extra packages for enterprise linux, fedora
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.