High severity7.7NVD Advisory· Published Sep 6, 2018· Updated Jun 17, 2026
CVE-2018-14632
CVE-2018-14632
Description
An out of bound write can occur when patching an Openshift object using the 'oc patch' functionality in OpenShift Container Platform before 3.7. An attacker can use this flaw to cause a denial of service attack on the Openshift master api service which provides cluster management.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/evanphx/json-patchGo | < 0.5.2 | 0.5.2 |
github.com/evanphx/json-patchGo | >= 3.0.0, < 3.0.1-0.20180525145409-4c9aadca8f89 | 3.0.1-0.20180525145409-4c9aadca8f89 |
Affected products
2Patches
Vulnerability mechanics
References
12- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchVendor AdvisoryWEB
- github.com/evanphx/json-patch/commit/4c9aadca8f89e349c999f04e28199e96e81aba03nvdPatchThird Party AdvisoryWEB
- access.redhat.com/errata/RHBA-2018:2652nvdVendor AdvisoryWEB
- access.redhat.com/errata/RHSA-2018:2654nvdVendor AdvisoryWEB
- access.redhat.com/errata/RHSA-2018:2709nvdVendor AdvisoryWEB
- access.redhat.com/errata/RHSA-2018:2906nvdVendor AdvisoryWEB
- access.redhat.com/errata/RHSA-2018:2908nvdVendor AdvisoryWEB
- github.com/advisories/GHSA-gxhv-3hwf-wjp9ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-14632ghsaADVISORY
- github.com/evanphx/json-patch/commit/4c9aadca8f89e349c999f04e28199e96e81aba03ghsaWEB
- github.com/evanphx/json-patch/pull/57ghsaWEB
- pkg.go.dev/vuln/GO-2021-0076ghsaWEB
News mentions
0No linked articles in our index yet.