Vulnerabilities > CVE-2021-3531 - Reachable Assertion vulnerability in multiple products

047910
CVSS 5.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
LOW
network
low complexity
redhat
fedoraproject
CWE-617

Summary

A flaw was found in the Red Hat Ceph Storage RGW in versions before 14.2.21. When processing a GET Request for a swift URL that ends with two slashes it can cause the rgw to crash, resulting in a denial of service. The greatest threat to the system is of availability.

Vulnerable Configurations

Part Description Count
Application
Redhat
275
OS
Fedoraproject
3

Common Weakness Enumeration (CWE)