CVE-2019-10222
HIGHCeph RGW - DoS
Title source: llmDescription
A flaw was found in the Ceph RGW configuration with Beast as the front end handling client requests. An unauthenticated attacker could crash the Ceph RGW server by sending valid HTTP headers and terminating the connection, resulting in a remote denial of service for Ceph RGW clients.
Scores
CVSS v3
7.5
EPSS
0.0266
EPSS Percentile
85.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-755
Status
published
Affected Products (5)
ceph/ceph
redhat/ceph_storage
redhat/ceph_storage
fedoraproject/fedora
fedoraproject/fedora
Timeline
Published
Nov 08, 2019
Tracked Since
Feb 18, 2026