CVE Vulnerabilities

CVE-2019-9514

Uncontrolled Resource Consumption

Published: Aug 13, 2019 | Modified: Jan 14, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
7.5 IMPORTANT
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of service. The attacker opens a number of streams and sends an invalid request over each stream that should solicit a stream of RST_STREAM frames from the peer. Depending on how the peer queues the RST_STREAM frames, this can consume excess memory, CPU, or both.

Weakness

The product does not properly control the allocation and maintenance of a limited resource.

Affected Software

NameVendorStart VersionEnd Version
SwiftnioApple1.0.0 (including)1.4.0 (including)
Red Hat AMQRedHat*
Red Hat AMQ 7.4.3RedHat*
Red Hat Data Grid 7.3.3RedHatnetty*
Red Hat Decision Manager 7RedHatnetty*
Red Hat Developer ToolsRedHatgo-toolset-1.11-0:1.11.13-1.el7*
Red Hat Developer ToolsRedHatgo-toolset-1.11-golang-0:1.11.13-2.el7*
Red Hat Enterprise Linux 7 ExtrasRedHatcontainernetworking-plugins-0:0.8.1-4.el7_7*
Red Hat Enterprise Linux 8RedHatgo-toolset:rhel8-8000120190828225436.14bc675c*
Red Hat Enterprise Linux 8RedHatnodejs:10-8000020190911085529.f8e95b4e*
Red Hat Enterprise Linux 8RedHatcontainer-tools:rhel8-8010020191126140055.c294d161*
Red Hat Enterprise Linux 8RedHatcontainer-tools:1.0-8010020191126173920.c294d161*
Red Hat Fuse 6.3RedHatnetty*
Red Hat Fuse 7.5.0RedHatgrpc*
Red Hat Fuse 7.5.0RedHatnetty*
Red Hat Fuse 7.6.0RedHatgolang*
Red Hat Fuse 7.6.0RedHatundertow*
Red Hat JBoss EAP 7.2RedHatundertow-core*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-apache-commons-beanutils-0:1.9.4-1.redhat_00002.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-infinispan-0:8.2.11-1.SP2_redhat_00001.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-jackson-databind-0:2.8.11.5-1.redhat_00001.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-log4j-jboss-logmanager-0:1.2.2-1.Final_redhat_00002.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-netty-0:4.1.45-1.Final_redhat_00001.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-undertow-0:1.4.18-12.SP12_redhat_00001.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-wildfly-0:7.1.7-2.GA_redhat_00002.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7RedHateap7-wildfly-elytron-0:1.1.13-1.Final_redhat_00001.1.ep7.el7*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-apache-cxf-0:3.2.10-1.redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-byte-buddy-0:1.9.11-1.redhat_00002.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-glassfish-jsf-0:2.3.5-5.SP3_redhat_00003.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-hal-console-0:3.0.17-2.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-hibernate-0:5.3.13-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-ironjacamar-0:1.4.18-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-jboss-genericjms-0:2.0.2-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-jboss-msc-0:1.4.11-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-jboss-remoting-0:5.0.16-2.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-jboss-server-migration-0:1.3.1-6.Final_redhat_00006.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-jboss-xnio-base-0:3.7.6-2.SP1_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-picketbox-0:5.0.3-6.Final_redhat_00005.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-picketlink-bindings-0:2.5.5-20.SP12_redhat_00009.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-picketlink-federation-0:2.5.5-20.SP12_redhat_00009.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-resteasy-0:3.6.1-7.SP7_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-undertow-0:2.0.26-2.SP3_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-wildfly-0:7.2.5-4.GA_redhat_00002.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-wildfly-elytron-0:1.6.5-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-wildfly-elytron-tool-0:1.4.4-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-wildfly-http-client-0:1.0.17-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-wildfly-openssl-0:1.0.8-1.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-wildfly-openssl-linux-x86_64-0:1.0.8-5.Final_redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6RedHateap7-yasson-0:1.0.5-1.redhat_00001.1.el6eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-apache-cxf-0:3.2.10-1.redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-byte-buddy-0:1.9.11-1.redhat_00002.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-glassfish-jsf-0:2.3.5-5.SP3_redhat_00003.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-hal-console-0:3.0.17-2.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-hibernate-0:5.3.13-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-ironjacamar-0:1.4.18-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-jboss-genericjms-0:2.0.2-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-jboss-msc-0:1.4.11-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-jboss-remoting-0:5.0.16-2.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-jboss-server-migration-0:1.3.1-6.Final_redhat_00006.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-jboss-xnio-base-0:3.7.6-2.SP1_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-picketbox-0:5.0.3-6.Final_redhat_00005.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-picketlink-bindings-0:2.5.5-20.SP12_redhat_00009.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-picketlink-federation-0:2.5.5-20.SP12_redhat_00009.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-resteasy-0:3.6.1-7.SP7_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-undertow-0:2.0.26-2.SP3_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-wildfly-0:7.2.5-4.GA_redhat_00002.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-wildfly-elytron-0:1.6.5-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-wildfly-elytron-tool-0:1.4.4-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-wildfly-http-client-0:1.0.17-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-wildfly-openssl-0:1.0.8-1.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-wildfly-openssl-linux-x86_64-0:1.0.8-5.Final_redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 7RedHateap7-yasson-0:1.0.5-1.redhat_00001.1.el7eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-apache-cxf-0:3.2.10-1.redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-byte-buddy-0:1.9.11-1.redhat_00002.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-glassfish-jsf-0:2.3.5-5.SP3_redhat_00003.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-hal-console-0:3.0.17-2.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-hibernate-0:5.3.13-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-ironjacamar-0:1.4.18-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-jboss-genericjms-0:2.0.2-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-jboss-msc-0:1.4.11-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-jboss-remoting-0:5.0.16-2.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-jboss-server-migration-0:1.3.1-6.Final_redhat_00006.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-jboss-xnio-base-0:3.7.6-2.SP1_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-picketbox-0:5.0.3-6.Final_redhat_00005.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-picketlink-bindings-0:2.5.5-20.SP12_redhat_00009.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-picketlink-federation-0:2.5.5-20.SP12_redhat_00009.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-resteasy-0:3.6.1-7.SP7_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-undertow-0:2.0.26-2.SP3_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-wildfly-0:7.2.5-4.GA_redhat_00002.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-wildfly-elytron-0:1.6.5-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-wildfly-elytron-tool-0:1.4.4-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-wildfly-http-client-0:1.0.17-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-wildfly-openssl-0:1.0.8-1.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-wildfly-openssl-linux-x86_64-0:1.0.8-5.Final_redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 8RedHateap7-yasson-0:1.0.5-1.redhat_00001.1.el8eap*
Red Hat JBoss Enterprise Application Platform Continuous DeliveryRedHatundertow*
Red Hat OpenShift Container Platform 3.10RedHatatomic-openshift-0:3.10.170-1.git.0.8e592d6.el7*
Red Hat OpenShift Container Platform 3.11RedHatapb-0:1.9.8-1.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-0:3.11.153-1.git.0.aaf3f71.el7*
Red Hat OpenShift Container Platform 3.11RedHatcri-tools-0:1.11.1-2.rhaos3.11.gitedabfb5.el7*
Red Hat OpenShift Container Platform 3.11RedHatopenshift-monitor-project-lifecycle-0:3.11.51-2.git.59.7b59e29.el7*
Red Hat OpenShift Container Platform 3.11RedHatcri-o-0:1.11.16-0.2.dev.rhaos3.11.git3f89eba.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-enterprise-service-catalog-1:3.11.154-1.git.1.fa68ced.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-cluster-autoscaler-0:3.11.154-1.git.1.532da7a.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-descheduler-0:3.11.154-1.git.1.1d31032.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-metrics-server-0:3.11.154-1.git.1.6a6b6ce.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-node-problem-detector-0:3.11.154-1.git.1.5e8e065.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-service-idler-0:3.11.154-1.git.1.f80fb86.el7*
Red Hat OpenShift Container Platform 3.11RedHatatomic-openshift-web-console-0:3.11.154-1.git.1.f54cb18.el7*
Red Hat OpenShift Container Platform 3.11RedHatcockpit-0:195-2.rhaos.el7*
Red Hat OpenShift Container Platform 3.11RedHatcsi-attacher-0:0.2.0-4.git27299be.el7*
Red Hat OpenShift Container Platform 3.11RedHatcsi-driver-registrar-0:0.2.0-2.el7*
Red Hat OpenShift Container Platform 3.11RedHatcsi-livenessprobe-0:0.0.1-2.gitff5b6a0.el7*
Red Hat OpenShift Container Platform 3.11RedHatcsi-provisioner-0:0.2.0-3.el7*
Red Hat OpenShift Container Platform 3.11RedHatgolang-github-openshift-oauth-proxy-0:3.11.154-1.git.1.220e3dc.el7*
Red Hat OpenShift Container Platform 3.11RedHatgolang-github-openshift-prometheus-alert-buffer-0:0-3.gitceca8c1.el7*
Red Hat OpenShift Container Platform 3.11RedHatgolang-github-prometheus-alertmanager-0:3.11.154-1.git.1.4acd2e6.el7*
Red Hat OpenShift Container Platform 3.11RedHatgolang-github-prometheus-node_exporter-0:3.11.154-1.git.1.bc9f224.el7*
Red Hat OpenShift Container Platform 3.11RedHatgolang-github-prometheus-prometheus-0:3.11.154-1.git.1.148db48.el7*
Red Hat OpenShift Container Platform 3.11RedHathawkular-openshift-agent-0:1.2.2-3.el7*
Red Hat OpenShift Container Platform 3.11RedHatheapster-0:1.3.0-4.el7*
Red Hat OpenShift Container Platform 3.11RedHatimage-inspector-0:2.4.0-4.el7*
Red Hat OpenShift Container Platform 3.11RedHatopenshift-enterprise-autoheal-0:3.11.154-1.git.1.13199be.el7*
Red Hat OpenShift Container Platform 3.11RedHatopenshift-enterprise-cluster-capacity-0:3.11.154-1.git.1.5798c2c.el7*
Red Hat OpenShift Container Platform 3.11RedHatopenshift-eventrouter-0:0.2-4.git7c289cc.el7*
Red Hat OpenShift Container Platform 3.11RedHatopenshift-external-storage-0:0.0.2-9.gitd3c94f0.el7*
Red Hat OpenShift Container Platform 3.9RedHatansible-service-broker-0:1.1.20-2.el7*
Red Hat OpenShift Container Platform 3.9RedHatatomic-openshift-0:3.9.101-1.git.0.150f595.el7*
Red Hat OpenShift Container Platform 3.9RedHatatomic-openshift-descheduler-0:3.9.13-2.git.267.bb59a3f.el7*
Red Hat OpenShift Container Platform 3.9RedHatatomic-openshift-dockerregistry-0:3.9.101-1.git.1.13625cf.el7*
Red Hat OpenShift Container Platform 3.9RedHatatomic-openshift-node-problem-detector-0:3.9.13-2.git.167.5d6b0d4.el7*
Red Hat OpenShift Container Platform 3.9RedHatatomic-openshift-web-console-0:3.9.101-1.git.1.601c6d2.el7*
Red Hat OpenShift Container Platform 3.9RedHatcockpit-0:195-2.rhaos.el7*
Red Hat OpenShift Container Platform 3.9RedHatcontainernetworking-plugins-0:0.5.2-6.el7*
Red Hat OpenShift Container Platform 3.9RedHatcri-o-0:1.9.16-3.git858756d.el7*
Red Hat OpenShift Container Platform 3.9RedHatcri-tools-0:1.0.0-6.rhaos3.9.git8e6013a.el7*
Red Hat OpenShift Container Platform 3.9RedHatgolang-github-openshift-oauth-proxy-0:2.1-3.git885c9f40.el7*
Red Hat OpenShift Container Platform 3.9RedHatgolang-github-openshift-prometheus-alert-buffer-0:0-3.gitceca8c1.el7*
Red Hat OpenShift Container Platform 3.9RedHatgolang-github-prometheus-alertmanager-0:0.14.0-2.git30af4d0.el7*
Red Hat OpenShift Container Platform 3.9RedHatgolang-github-prometheus-node_exporter-0:3.9.101-1.git.1.8295224.el7*
Red Hat OpenShift Container Platform 3.9RedHatgolang-github-prometheus-prometheus-0:2.2.1-2.gitbc6058c.el7*
Red Hat OpenShift Container Platform 3.9RedHatgolang-github-prometheus-promu-0:0-5.git85ceabc.el7*
Red Hat OpenShift Container Platform 3.9RedHathawkular-openshift-agent-0:1.2.2-3.el7*
Red Hat OpenShift Container Platform 3.9RedHatheapster-0:1.3.0-4.el7*
Red Hat OpenShift Container Platform 3.9RedHatimage-inspector-0:2.1.3-2.el7*
Red Hat OpenShift Container Platform 3.9RedHatopenshift-enterprise-image-registry-0:3.8.0-2.git.216.b6b90bb.el7*
Red Hat OpenShift Container Platform 3.9RedHatopenshift-eventrouter-0:0.1-3.git5bd9251.el7*
Red Hat OpenShift Container Platform 3.9RedHatopenshift-external-storage-0:0.0.1-9.git78d6339.el7*
Red Hat OpenShift Container Platform 3.9RedHatopenvswitch-ovn-kubernetes-0:0.1.0-3.el7*
Red Hat OpenShift Container Platform 4.1RedHatansible-service-broker-1:1.4.4-2.el7*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/apb-base:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/mariadb-apb:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/mediawiki:v4.1.14-201909040920*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/mediawiki-apb:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/mysql-apb:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-ansible-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-aws-machine-controllers:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-azure-machine-controllers:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-baremetal-machine-controllers:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cli:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cli-artifacts:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cloud-credential-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-authentication-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-autoscaler:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-autoscaler-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-bootstrap:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-capacity:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-config-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-dns-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-image-registry-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-ingress-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-kube-apiserver-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-kube-controller-manager-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-kube-scheduler-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-logging-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-machine-approver:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-monitoring-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-network-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-node-tuning-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-openshift-apiserver-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-openshift-controller-manager-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-samples-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-storage-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-update-keys:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-cluster-version-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-configmap-reloader:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-console:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-console-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-coredns:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-deployer:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-descheduler:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-descheduler-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-docker-builder:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-docker-registry:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-egress-dns-proxy:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-egress-http-proxy:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-egress-router:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-elasticsearch-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-etcd:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-grafana:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-haproxy-router:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-hyperkube:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-hypershift:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-installer:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-installer-artifacts:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-jenkins:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-jenkins-agent-base:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-jenkins-agent-maven:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-k8s-prometheus-adapter:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-keepalived-ipfailover:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-kube-proxy:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-kube-rbac-proxy:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-kube-state-metrics:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-libvirt-machine-controllers:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-logging-curator5:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-logging-elasticsearch5:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-logging-eventrouter:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-logging-fluentd:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-machine-api-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-machine-config-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-multus-admission-controller:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-multus-cni:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-must-gather:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-oauth-proxy:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-openstack-machine-controllers:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-operator-lifecycle-manager:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-operator-marketplace:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-operator-registry:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-ovn-kubernetes:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-pod:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-prometheus:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-prometheus-alertmanager:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-prometheus-config-reloader:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-prometheus-node-exporter:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-prometheus-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-prom-label-proxy:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-service-ca-operator:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-sriov-cni:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-sriov-dp-admission-controller:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-sriov-network-device-plugin:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-telemeter:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-tests:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/postgres-apb:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/postgresql-apb:v4.1.14-201908291507*
Red Hat OpenShift Container Platform 4.1RedHatatomic-enterprise-service-catalog-1:4.1.14-201908290858.git.1.28cc9ff.el7*
Red Hat OpenShift Container Platform 4.1RedHatopenshift-0:4.1.14-201908290858.git.0.3bd3467.el7*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-multus-cni:v4.1.15-201909041605*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-operator-lifecycle-manager:v4.1.15-201909041605*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-operator-registry:v4.1.15-201909041605*
Red Hat OpenShift Container Platform 4.1RedHatopenshift4/ose-sriov-network-device-plugin:v4.1.18-201909201915*
Red Hat OpenShift Container Platform 4.1RedHatcri-o-0:1.13.11-0.13.dev.rhaos4.1.gitbdeb2ca.el8*
Red Hat OpenShift Container Platform 4.1RedHatcri-tools-0:1.13.0-3.rhaos4.1.gitb69a0b9.el8*
Red Hat OpenShift Container Platform 4.1RedHatfaq-0:0.0.6-4.el7*
Red Hat OpenShift Container Platform 4.1RedHatignition-0:0.32.0-2.git5941fc0.el8*
Red Hat OpenShift Container Platform 4.1RedHatopenshift-external-storage-0:0.0.2-7.gitd3c94f0.el7*
Red Hat OpenShift Container Platform 4.1RedHatpivot-0:0.0.5-2.el8*
Red Hat OpenShift Container Platform 4.1RedHatansible-operator-0:0.0.1-3.git.59.4beb3d2.el7*
Red Hat OpenShift Container Platform 4.1RedHatapb-0:2.0.3-2.el7*
Red Hat OpenShift Container Platform 4.1RedHatcontainernetworking-plugins-0:0.8.1-4.el7*
Red Hat OpenShift Container Platform 4.1RedHatgolang-github-openshift-prometheus-alert-buffer-0:0-3.gitceca8c1.el7*
Red Hat OpenShift Container Platform 4.1RedHatgolang-github-prometheus-promu-0:0-5.git85ceabc.el7*
Red Hat OpenShift Container Platform 4.1RedHatopenshift-eventrouter-0:0.2-3.gited73fb6.el7*
Red Hat OpenShift Container Platform 4.2RedHatapb-0:2.0.3-2.el7*
Red Hat OpenShift Container Platform 4.2RedHatcontainernetworking-plugins-0:0.8.1-4.el7*
Red Hat OpenShift Container Platform 4.2RedHatgolang-github-prometheus-promu-0:0.5.0-2.git642a960.el7*
Red Hat OpenStack Platform 14.0 (Rocky)RedHatskydive-0:0.20.5-2.el7ost*
Red Hat Process Automation 7RedHatnetty*
Red Hat Quay 3RedHatquay3/clair-jwt:v2.0.9-7*
Red Hat Single Sign-On 7.3RedHatnetty*
Red Hat Single Sign-On 7.3 for RHEL 6RedHatrh-sso7-keycloak-0:4.8.15-1.Final_redhat_00001.1.el6sso*
Red Hat Single Sign-On 7.3 for RHEL 7RedHatrh-sso7-keycloak-0:4.8.15-1.Final_redhat_00001.1.el7sso*
Red Hat Single Sign-On 7.3 for RHEL 8RedHatrh-sso7-keycloak-0:4.8.15-1.Final_redhat_00001.1.el8sso*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-nodejs10-0:3.2-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-nodejs10-nodejs-0:10.16.3-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-nodejs8-0:3.0-5.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7RedHatrh-nodejs8-nodejs-0:8.16.1-2.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUSRedHatrh-nodejs10-0:3.2-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUSRedHatrh-nodejs10-nodejs-0:10.16.3-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUSRedHatrh-nodejs8-0:3.0-5.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUSRedHatrh-nodejs8-nodejs-0:8.16.1-2.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-nodejs10-0:3.2-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-nodejs10-nodejs-0:10.16.3-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-nodejs8-0:3.0-5.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSRedHatrh-nodejs8-nodejs-0:8.16.1-2.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-nodejs10-0:3.2-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-nodejs10-nodejs-0:10.16.3-3.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-nodejs8-0:3.0-5.el7*
Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUSRedHatrh-nodejs8-nodejs-0:8.16.1-2.el7*
Text-Only RHOARRedHat*
Golang-1.10Ubuntubionic*
Golang-1.10Ubuntudisco*
Golang-1.10Ubuntuesm-infra/bionic*
Golang-1.10Ubuntutrusty/esm*
Golang-1.10Ubuntuxenial*
Golang-1.11Ubuntudisco*
Golang-1.12Ubuntudisco*
Golang-1.12Ubuntueoan*
Golang-1.6Ubuntuxenial*
Golang-1.8Ubuntubionic*
Golang-1.8Ubuntuesm-apps/bionic*
Golang-1.9Ubuntubionic*
Golang-1.9Ubuntuesm-apps/bionic*
Golang-google-grpcUbuntubionic*
Golang-google-grpcUbuntucosmic*
Golang-google-grpcUbuntudevel*
Golang-google-grpcUbuntudisco*
Golang-google-grpcUbuntueoan*
Golang-google-grpcUbuntuesm-apps/bionic*
Golang-google-grpcUbuntuesm-apps/focal*
Golang-google-grpcUbuntuesm-apps/jammy*
Golang-google-grpcUbuntuesm-apps/noble*
Golang-google-grpcUbuntuesm-apps/xenial*
Golang-google-grpcUbuntufocal*
Golang-google-grpcUbuntugroovy*
Golang-google-grpcUbuntuhirsute*
Golang-google-grpcUbuntuimpish*
Golang-google-grpcUbuntujammy*
Golang-google-grpcUbuntukinetic*
Golang-google-grpcUbuntulunar*
Golang-google-grpcUbuntumantic*
Golang-google-grpcUbuntunoble*
Golang-google-grpcUbuntuoracular*
Golang-google-grpcUbuntuplucky*
Golang-google-grpcUbuntuquesting*
Golang-google-grpcUbuntuxenial*
GrpcUbuntubionic*
GrpcUbuntucosmic*
GrpcUbuntudevel*
GrpcUbuntudisco*
GrpcUbuntueoan*
GrpcUbuntuesm-apps/bionic*
GrpcUbuntuesm-apps/focal*
GrpcUbuntuesm-apps/jammy*
GrpcUbuntuesm-apps/noble*
GrpcUbuntuesm-apps/xenial*
GrpcUbuntufocal*
GrpcUbuntugroovy*
GrpcUbuntuhirsute*
GrpcUbuntuimpish*
GrpcUbuntujammy*
GrpcUbuntukinetic*
GrpcUbuntulunar*
GrpcUbuntumantic*
GrpcUbuntunoble*
GrpcUbuntuoracular*
GrpcUbuntuplucky*
GrpcUbuntuquesting*
GrpcUbuntuxenial*
H2oUbuntubionic*
H2oUbuntudisco*
H2oUbuntutrusty*
NettyUbuntubionic*
NettyUbuntucosmic*
NettyUbuntudisco*
NettyUbuntueoan*
NettyUbuntuesm-apps/bionic*
NettyUbuntugroovy*
NettyUbuntuhirsute*
NettyUbuntuimpish*
NettyUbuntukinetic*
NettyUbuntulunar*
NettyUbuntumantic*
NettyUbuntutrusty*
NettyUbuntuupstream*
NginxUbuntutrusty*
NodejsUbuntubionic*
NodejsUbuntuesm-apps/bionic*
NodejsUbuntuesm-apps/xenial*
NodejsUbuntuesm-infra-legacy/trusty*
NodejsUbuntugroovy*
NodejsUbuntuhirsute*
NodejsUbuntuimpish*
NodejsUbuntukinetic*
NodejsUbuntutrusty*
NodejsUbuntutrusty/esm*
NodejsUbuntuxenial*
TrafficserverUbuntubionic*
TrafficserverUbuntucosmic*
TrafficserverUbuntudisco*
TrafficserverUbuntuesm-apps/bionic*
TrafficserverUbuntutrusty*
TrafficserverUbuntuxenial*
TwistedUbuntubionic*
TwistedUbuntucosmic*
TwistedUbuntudevel*
TwistedUbuntudisco*
TwistedUbuntueoan*
TwistedUbuntuesm-infra/bionic*
TwistedUbuntuesm-infra/focal*
TwistedUbuntufocal*
TwistedUbuntugroovy*
TwistedUbuntuhirsute*
TwistedUbuntuimpish*
TwistedUbuntujammy*
TwistedUbuntukinetic*
TwistedUbuntulunar*
TwistedUbuntumantic*
TwistedUbuntunoble*
TwistedUbuntuoracular*
TwistedUbuntuplucky*
TwistedUbuntuquesting*
TwistedUbuntutrusty*
TwistedUbuntuupstream*

Potential Mitigations

  • Mitigation of resource exhaustion attacks requires that the target system either:

  • The first of these solutions is an issue in itself though, since it may allow attackers to prevent the use of the system by a particular valid user. If the attacker impersonates the valid user, they may be able to prevent the user from accessing the server in question.

  • The second solution is simply difficult to effectively institute – and even when properly done, it does not provide a full solution. It simply makes the attack require more resources on the part of the attacker.

References