Skip to main content

Vendor/product archive

redhat / openshift_service_mesh CVEs

Beta · best-effort

21 CVEs tagged to redhat / openshift_service_mesh2 Critical, 16 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2025-0752

Published Jan 28, 2025

A flaw was found in OpenShift Service Mesh 2.6.3 and 2.5.6. Rate-limiter avoidance, access-control bypass, CPU and memory exhaustion, and replay attacks may be possible due to imp…

CVSS 7.1 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2019-25014

Published Jan 29, 2021

A NULL pointer dereference was found in pkg/proxy/envoy/v2/debug.go getResourceVersion in Istio pilot before 1.5.0-alpha.0. If a particular HTTP GET request is made to the pilot A…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-1704

Published Feb 17, 2020

An insecure modification vulnerability in the /etc/passwd file was found in all versions of OpenShift ServiceMesh (maistra) before 1.0.8 in the openshift/istio-kialia-rhel7-operat…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort
Showing 1-21 of 21 CVEsPage 1 of 1