First published: Tue Nov 12 2019(Updated: )
Istio 1.3.x before 1.3.5 allows Denial of Service because continue_on_listener_filters_timeout is set to True, a related issue to CVE-2019-18836.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
go/istio.io/istio | >=1.3.0<1.3.5 | 1.3.5 |
Istio Istio | >=1.3<1.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-18817 is a vulnerability in Istio 1.3.x before 1.3.5 that allows denial of service due to the continue_on_listener_filters_timeout being set to True.
CVE-2019-18817 affects Istio versions 1.3.x before 1.3.5.
The severity of CVE-2019-18817 is high, with a CVSS score of 7.5.
To fix CVE-2019-18817, upgrade Istio to version 1.3.5.
More information about CVE-2019-18817 can be found at the following references: [1] [2] [3]