Vulnerabilities > CVE-2018-11084 - Unspecified vulnerability in Cloudfoundry Garden-Runc

047910
CVSS 5.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
cloudfoundry

Summary

Cloud Foundry Garden-runC release, versions prior to 1.16.1, prevents deletion of some app environments based on file attributes. A remote authenticated malicious user may create and delete apps with crafted file attributes to cause a denial of service for new app instances or scaling up of existing apps.

Vulnerable Configurations

Part Description Count
Application
Cloudfoundry
46