CVE-2018-7262 in Red Hat and Fedora Project Products
Published on March 19, 2018
In Ceph before 12.2.3 and 13.x through 13.0.1, the rgw_civetweb.cc RGWCivetWeb::init_env function in radosgw doesn't handle malformed HTTP headers properly, allowing for denial of service.
Products Associated with CVE-2018-7262
stack.watch emails you whenever new vulnerabilities are published in Red Hat Ceph or Fedora Project Fedora. Just hit a watch button to start following.
Exploit Probability
EPSS
1.54%
Percentile
81.14%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.