{"id":"CVE-2023-32187","aliases":[],"url":"https://o3.security/vulnerability/CVE-2023-32187","summary":"An Allocation of Resources Without Limits or Throttling vulnerability in SUSE k3s allows attackers with access to K3s servers' apiserver/supervisor port (TCP 6443) cause denial of service.\nThis…","details":"An Allocation of Resources Without Limits or Throttling vulnerability in SUSE k3s allows attackers with access to K3s servers' apiserver/supervisor port (TCP 6443) cause denial of service.\nThis issue affects k3s: from v1.24.0 before v1.24.17+k3s1, from v1.25.0 before v1.25.13+k3s1, from v1.26.0 before v1.26.8+k3s1, from sev1.27.0 before v1.27.5+k3s1, from v1.28.0 before v1.28.1+k3s1.\n\n","published":"2023-09-18T13:15:08.190","modified":"2026-06-17T05:58:16.547","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://bugzilla.suse.com/show_bug.cgi?id=CVE-2023-32187https://"},{"type":"ADVISORY","url":"https://github.com/k3s-io/k3s/security/advisories/GHSA-m4hf-6vgr-75r2"},{"type":"WEB","url":"https://bugzilla.suse.com/show_bug.cgi?id=CVE-2023-32187https://"},{"type":"ADVISORY","url":"https://github.com/k3s-io/k3s/security/advisories/GHSA-m4hf-6vgr-75r2"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-06-17T05:58:16.547"}}