ceph/civetweb

ceph/civetweb

Releases6
Frequency8 months 3 weeks
Last Release
Stars9
Embedded C/C++ web server

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

A flaw was found in the way civetweb frontend was handling requests for ceph RGW server with SSL enabled. An unauthenticated attacker could create multiple connections to ceph RADOS gateway to exhaust file descriptors for ceph-radosgw service resulting in a remote denial of service.