redhat ceph CVE-2018-7262 in Red Hat and Fedora Project Products
Published on March 19, 2018

product logo product logo
In Ceph before 12.2.3 and 13.x through 13.0.1, the rgw_civetweb.cc RGWCivetWeb::init_env function in radosgw doesn't handle malformed HTTP headers properly, allowing for denial of service.

Vendor Advisory Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2018-7262

stack.watch emails you whenever new vulnerabilities are published in Red Hat Ceph or Fedora Project Fedora. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
1.54%
Percentile
81.14%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.