CVE-2018-16848: Medium severity red hat openstack mistral vulnerability
A Denial of Service (DoS) condition is possible in OpenStack Mistral in versions up to and including 7.0.3. Submitting a specially crafted workflow definition YAML file containing nested anchors can lead to resource exhaustion culminating in a denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-16848?
The severity of CVE-2018-16848 is medium, with a severity value of 6.5.
How can I fix the vulnerability CVE-2018-16848?
To fix the vulnerability CVE-2018-16848, you should update OpenStack Mistral to version 7.0.4 or higher.
Which versions of OpenStack Mistral are affected by CVE-2018-16848?
Versions up to and including 7.0.3 of OpenStack Mistral are affected by CVE-2018-16848.
What is the impact of CVE-2018-16848?
Submitting a specially crafted workflow definition YAML file containing nested anchors can lead to resource exhaustion culminating in a denial of service.
Where can I find more information about CVE-2018-16848?
You can find more information about CVE-2018-16848 in the following references: [1] [2] [3].