First published: Fri Jul 09 2021(Updated: )
Mismanaged state in GRPCWebToHTTP2ServerCodec.swift in gRPC Swift 1.1.0 and 1.1.1 allows remote attackers to deny service by sending malformed requests.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linuxfoundation Grpc Swift | =1.1.0 | |
Linuxfoundation Grpc Swift | =1.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36153 is classified as a denial of service vulnerability.
To mitigate CVE-2021-36153, you should upgrade to gRPC Swift version 1.1.2 or later.
Versions 1.1.0 and 1.1.1 of gRPC Swift are affected by CVE-2021-36153.
Yes, CVE-2021-36153 can be exploited remotely by sending malformed requests.
The impact of CVE-2021-36153 is that it allows remote attackers to deny service.