low

CloudFormation denial of service (in a single account)

Published Tue, Sep 1st, 2020

Platforms

aws

Summary

An attacker with the ability to create CloudFormation stacks could cause a denial-of-service on some CloudFormation actions within a single AWS account.

Affected Services

CloudFormation

Remediation

None required

Tracked CVEs

No tracked CVEs

References

Contributed by https://github.com/Rami McCarthy

Entry Status

Finalized

Disclosure Date

Tue, Sep 1st, 2020

Exploitability Period

-

Known ITW Exploitation

-

Detection Methods

None.

Piercing Index Rating

-

Discovered by

Ian Mckay