Known Vulnerabilities for Openshift Application Runtimes by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Openshift Application Runtimes" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-1108 json | A flaw was found in undertow. This issue makes achieving a denial of service possible due to an unexpected handshake status u... | 7.5 - HIGH | 2023-09-14 | 2023-11-16 |
| CVE-2022-1319 json | A flaw was found in Undertow. For an AJP 400 response, EAP 7 is improperly sending two response packets, and those packets ha... | 7.5 - HIGH | 2022-08-31 | 2022-11-07 |
| CVE-2022-1259 json | A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhe... | 7.5 - HIGH | 2022-08-31 | 2022-11-07 |
| CVE-2021-4178 json | A arbitrary code execution flaw was found in the Fabric 8 Kubernetes client affecting versions 5.0.0-beta-1 and above. Due to... | 6.7 - MEDIUM | 2022-08-24 | 2022-10-04 |
| CVE-2021-4104 json | JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j c... | 7.5 - HIGH | 2021-12-14 | 2023-12-22 |
| CVE-2021-3914 json | It was found that the smallrye health metrics UI component did not properly sanitize some user inputs. An attacker could use ... | 6.1 - MEDIUM | 2022-08-25 | 2022-09-02 |
| CVE-2021-3690 json | A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw a... | 7.5 - HIGH | 2022-08-23 | 2023-07-07 |
| CVE-2021-3642 json | A flaw was found in Wildfly Elytron in versions prior to 1.10.14.Final, prior to 1.15.5.Final and prior to 1.16.1.Final where... | 5.3 - MEDIUM | 2021-08-05 | 2021-10-20 |
| CVE-2021-3597 json | A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a ... | 5.9 - MEDIUM | 2022-05-24 | 2022-11-10 |
| CVE-2020-27782 json | A flaw was found in the Undertow AJP connector. Malicious requests and abrupt connection closes could be triggered by an atta... | 7.5 - HIGH | 2021-02-23 | 2021-02-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Openshift Application Runtimes | - |