Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4r53-8549-7m3r

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Envoy before 1.12.1 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy loop when continue_on_listener_filters_timeout is used.

Envoy before 1.12.1 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy loop when continue_on_listener_filters_timeout is used.

EPSS

Процентиль: 36%
0.00155
Низкий

Связанные уязвимости

CVSS3: 7.5
redhat
около 6 лет назад

Envoy 1.12.0 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy loop when continue_on_listener_filters_timeout is used."

CVSS3: 7.5
nvd
около 6 лет назад

Envoy 1.12.0 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy loop when continue_on_listener_filters_timeout is used."

CVSS3: 7.5
fstec
больше 6 лет назад

Уязвимость сетевых программных средств Envoy и Istio, связанная с входом в бесконечный цикл при подаче определенных входных данных, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 36%
0.00155
Низкий