Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-20882

Опубликовано: 26 мая 2023
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

In Cloud foundry routing release versions from 0.262.0 and prior to 0.266.0,a bug in the gorouter process can lead to a denial of service of applications hosted on Cloud Foundry. Under the right circumstances, when client connections are closed prematurely, gorouter marks the currently selected backend as failed and removes it from the routing pool.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cloudfoundry:cf-deployment:*:*:*:*:*:*:*:*
Версия от 27.4.0 (включая) до 29.0.0 (исключая)
cpe:2.3:a:cloudfoundry:routing_release:*:*:*:*:*:*:*:*
Версия от 0.262.0 (включая) до 0.266.0 (исключая)

EPSS

Процентиль: 39%
0.00177
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-400
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 5.9
github
больше 2 лет назад

In Cloud foundry routing release versions from 0.262.0 and prior to 0.266.0,a bug in the gorouter process can lead to a denial of service of applications hosted on Cloud Foundry. Under the right circumstances, when client connections are closed prematurely, gorouter marks the currently selected backend as failed and removes it from the routing pool.

EPSS

Процентиль: 39%
0.00177
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-400
NVD-CWE-noinfo