An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated remote attacker to run a specially crafted malicious server in an OpenShift cluster. The biggest impact is to availability.
References
Link | Resource |
---|---|
https://access.redhat.com/security/cve/CVE-2023-0056 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
|
History
No history.
Information
Published : 2023-03-23 21:15
Updated : 2024-02-28 20:13
NVD link : CVE-2023-0056
Mitre link : CVE-2023-0056
CVE.ORG link : CVE-2023-0056
JSON object : View
Products Affected
redhat
- openshift_container_platform_ibm_z_systems
- enterprise_linux
- openshift_container_platform_for_ibm_linuxone
- ceph_storage
- openshift_container_platform_for_power
- openshift_container_platform
- software_collections
fedoraproject
- extra_packages_for_enterprise_linux
- fedora
haproxy
- haproxy
CWE
CWE-400
Uncontrolled Resource Consumption