First published: Mon Mar 27 2023(Updated: )
If Envoy is running with the OAuth filter enabled exposed, a malicious actor could construct a request which would cause denial of service by crashing Envoy.
Affected Software | Affected Version | How to fix |
---|---|---|
Envoy Envoy |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2182155 is considered critical due to the potential for denial of service.
To mitigate the REDHAT-BUG-2182155 vulnerability, update Envoy to the latest version where the issue is resolved.
REDHAT-BUG-2182155 potentially allows a denial of service attack through a crafted request.
REDHAT-BUG-2182155 affects Envoy when the OAuth filter is enabled.
Exploiting REDHAT-BUG-2182155 can lead to Envoy crashing, thus disrupting service availability.