semver-regex is vulnerable to Inefficient Regular Expression Complexity
Metrics
No CVSS v4.0
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Partial
This CVE is not in the KEV list.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
| Redhat |
|
| Semver-regex Project |
|
Configuration 1 [-]
|
| Package | CPE | Advisory | Released Date |
|---|---|---|---|
| Red Hat Advanced Cluster Management for Kubernetes 2 | |||
| acmesolver-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| acm-must-gather-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| acm-operator-bundle-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| application-ui-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| cainjector-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| cert-manager-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| cert-manager-webhook-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| cert-policy-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| clusterlifecycle-state-metrics-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| configmap-watcher-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| config-policy-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| console-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| console-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| console-header-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| endpoint-component-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| endpoint-monitoring-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| endpoint-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| governance-policy-propagator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| governance-policy-spec-sync-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| governance-policy-status-sync-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| governance-policy-template-sync-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| grafana-dashboard-loader-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| grc-ui-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| grc-ui-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| iam-policy-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| klusterlet-addon-lease-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| klusterlet-operator-bundle-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| kui-web-terminal-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| management-ingress-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| mcm-topology-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| mcm-topology-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| memcached-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| memcached-exporter-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| metrics-collector-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicloud-manager-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multiclusterhub-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multiclusterhub-repo-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-observability-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-operators-application-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-operators-channel-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-operators-deployable-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-operators-placementrule-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-operators-subscription-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| multicluster-operators-subscription-release-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| observatorium-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| observatorium-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| openshift-hive-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| rbac-query-proxy-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| rcm-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| redisgraph-tls-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| registration-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| registration-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| search-aggregator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| search-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| search-collector-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| search-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| search-ui-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| submariner-addon-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| thanos-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| thanos-receive-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| work-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:3873 | 2021-10-14T00:00:00Z |
| acmesolver-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| acm-must-gather-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| acm-operator-bundle-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| application-ui-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| cainjector-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| cert-manager-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| cert-manager-webhook-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| cert-policy-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| clusterlifecycle-state-metrics-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| configmap-watcher-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| config-policy-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| console-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| console-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| console-header-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| endpoint-component-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| endpoint-monitoring-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| endpoint-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| governance-policy-propagator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| governance-policy-spec-sync-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| governance-policy-status-sync-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| governance-policy-template-sync-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| grafana-dashboard-loader-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| grc-ui-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| grc-ui-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| iam-policy-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| klusterlet-addon-lease-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| klusterlet-operator-bundle-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| kui-web-terminal-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| management-ingress-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| mcm-topology-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| mcm-topology-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| memcached-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| memcached-exporter-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| metrics-collector-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicloud-manager-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multiclusterhub-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multiclusterhub-repo-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-observability-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-operators-application-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-operators-channel-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-operators-deployable-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-operators-placementrule-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-operators-subscription-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| multicluster-operators-subscription-release-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| observatorium-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| observatorium-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| openshift-hive-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| rbac-query-proxy-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| rcm-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| redisgraph-tls-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| registration-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| registration-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| search-aggregator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| search-api-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| search-collector-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| search-operator-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| search-ui-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| submariner-addon-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| thanos-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| thanos-receive-controller-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
| work-container | cpe:/a:redhat:acm:2.2::el7 | RHSA-2021:5038 | 2021-12-09T00:00:00Z |
References
History
Sun, 08 Sep 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat acm |
|
| CPEs | cpe:/a:redhat:acm:2.2::el7 | |
| Vendors & Products |
Redhat
Redhat acm |
Mon, 19 Aug 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Vendors & Products |
Redhat
Redhat acm |
Status: PUBLISHED
Assigner: @huntrdev
Published: 2021-09-15T16:23:49
Updated: 2024-08-03T17:09:08.695Z
Reserved: 2021-09-11T00:00:00
Link: CVE-2021-3795
No data.
Status : Modified
Published: 2021-09-15T17:15:10.577
Modified: 2024-11-21T06:22:27.370
Link: CVE-2021-3795