Логотип exploitDog
bind:CVE-2021-39204
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-39204

Количество 2

Количество 2

nvd логотип

CVE-2021-39204

больше 4 лет назад

Pomerium is an open source identity-aware access proxy. Envoy, which Pomerium is based on, incorrectly handles resetting of HTTP/2 streams with excessive complexity. This can lead to high CPU utilization when a large number of streams are reset. This can result in a DoS condition. Pomerium versions 0.14.8 and 0.15.1 contain an upgraded envoy binary with this vulnerability patched.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-5wjf-62hw-q78r

больше 4 лет назад

Excessive CPU usage

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-39204

Pomerium is an open source identity-aware access proxy. Envoy, which Pomerium is based on, incorrectly handles resetting of HTTP/2 streams with excessive complexity. This can lead to high CPU utilization when a large number of streams are reset. This can result in a DoS condition. Pomerium versions 0.14.8 and 0.15.1 contain an upgraded envoy binary with this vulnerability patched.

CVSS3: 7.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-5wjf-62hw-q78r

Excessive CPU usage

CVSS3: 7.5
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу