CVE-2018-10885: Red Hat Openshift
High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.
In atomic-openshift before version 3.10.9 a malicious network-policy configuration can cause Openshift Routing to crash when using ovs-networkpolicy plugin. An attacker can use this flaw to cause a Denial of Service (DoS) attack on an Openshift 3.9, or 3.7 Cluster.
Affected products
- Red Hat Openshift: before 3.10.9 (fixed in 3.10.9)
Published 2018-07-05. Last modified 2026-06-17.