CVE-2014-0180

Severity
5.0MEDIUM
EPSS
0.7%
top 27.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 7
Latest updateMay 17

Description

The wait_for_task function in app/controllers/application_controller.rb in Red Hat CloudForms 3.0 Management Engine (CFME) before 5.2.4.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via unspecified vectors.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-p9jr-2p44-p728: The wait_for_task function in app/controllers/application_controller2022-05-17
CVEList
CVE-2014-0180: The wait_for_task function in app/controllers/application_controller2014-07-07

📋Vendor Advisories

1
Red Hat
CFME: app/controllers/application_controller.rb wait_for_task DoS2014-06-30

💬Community

1
Bugzilla
CVE-2014-0180 CFME: app/controllers/application_controller.rb wait_for_task DoS2014-04-15