Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Envoy version 1.14.2, 1.13.2, 1.12.4 or earlier is susceptible to increased memory usage in the case where an HTTP/2 client requests a large payload but does not send enough window updates to consume the entire stream and does not reset the stream.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Envoy 缓冲区错误漏洞
Vulnerability Description
Envoy是一款开源的分布式代理服务器。 Envoy 1.14.2版本、1.13.2版本和1.12.4及之前版本中存在缓冲区错误漏洞。远程攻击者可利用该漏洞导致应用程序崩溃(内存大量消耗)。
CVSS Information
N/A
Vulnerability Type
N/A