Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-2238


A vulnerability was found in the search-api container in Red Hat Advanced Cluster Management for Kubernetes when a query in the search filter gets parsed by the backend. This flaw allows an attacker to craft specific strings containing special characters that lead to crashing the pod and affects system availability while restarting.


Published

2022-09-01T21:15:09.233

Last Modified

2024-11-21T07:00:36.003

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-89
  • Type: Secondary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application redhat advanced_cluster_management_for_kubernetes 2.0 Yes

References