Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rpv9-285j-r9jm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-proxy as the network filter (not HTTP filters).

Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-proxy as the network filter (not HTTP filters).

EPSS

Процентиль: 73%
0.00781
Низкий

Связанные уязвимости

CVSS3: 8.8
redhat
около 5 лет назад

Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-proxy as the network filter (not HTTP filters).

CVSS3: 8.8
nvd
около 5 лет назад

Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-proxy as the network filter (not HTTP filters).

CVSS3: 8.8
debian
около 5 лет назад

Envoy before 1.16.1 logs an incorrect downstream address because it co ...

EPSS

Процентиль: 73%
0.00781
Низкий