Denial of Service Vulnerability in Ceph RGW by Red Hat
CVE-2019-10222
7.5HIGH
What is CVE-2019-10222?
A flaw exists in the Ceph RGW configuration that uses Beast as the front end for handling client requests. An unauthenticated attacker can exploit this flaw by sending valid HTTP headers and immediately terminating the connection. This action can lead to a crash of the Ceph RGW server, resulting in a denial of service for users attempting to connect through the Ceph RGW interface.
Affected Version(s)
ceph
