CVE-2018-7262: Null Pointer Dereference
In Ceph before 12.2.3 and 13.x through 13.0.1, the rgwcivetweb.cc RGWCivetWeb::initenv function in radosgw doesn't handle malformed HTTP headers properly, allowing for denial of service.
Other sources
In ceph, HTTP request headers without a ":" character that are handled in rgwcivetweb.cc:RGW::initenv() can cause variables to be set to NULL, leading to a crash or other potentially unspecified behaviour.
Upstream Pull Request:
https://github.com/ceph/ceph/pull/20403
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-7262?
CVE-2018-7262 is a vulnerability in Ceph before version 12.2.3 and 13.x through 13.0.1 that allows for denial of service.
How does CVE-2018-7262 affect Redhat Ceph?
CVE-2018-7262 affects Redhat Ceph versions 12.2.3, 13.0.0, and 13.0.1.
What is the severity of CVE-2018-7262?
The severity of CVE-2018-7262 is high with a CVSS score of 7.5.
How can I fix the CVE-2018-7262 vulnerability?
To fix the CVE-2018-7262 vulnerability, update Ceph to a version higher than 12.2.3 or 13.0.1.
Where can I find more information about CVE-2018-7262?
You can find more information about CVE-2018-7262 at the following references: [http://tracker.ceph.com/issues/23039](http://tracker.ceph.com/issues/23039), [https://access.redhat.com/errata/RHSA-2018:0546](https://access.redhat.com/errata/RHSA-2018:0546), [https://access.redhat.com/errata/RHSA-2018:0548](https://access.redhat.com/errata/RHSA-2018:0548).