JSON-Patch Out-of-bounds Write vulnerability
High severity
GitHub Reviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Feb 8, 2023
Package
Affected versions
< 0.5.2
>= 3.0.0, < 3.0.1-0.20180525145409-4c9aadca8f89
Patched versions
0.5.2
3.0.1-0.20180525145409-4c9aadca8f89
Description
Published by the National Vulnerability Database
Sep 6, 2018
Published to the GitHub Advisory Database
May 13, 2022
Reviewed
Feb 8, 2023
Last updated
Feb 8, 2023
An out of bound write can occur when patching an Openshift object using the
oc patch
functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.References