Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Glbrntt

#17870of 53,633
15Total CVSS
Vulnerabilities · 2
High
2
PT-2021-21142
7.5
2021-07-09
Unknown · Grpc Swift · CVE-2021-36154
Name of the Vulnerable Software and Affected Versions: gRPC Swift versions 1.1.1 and earlier Description: The issue allows remote attackers to cause a denial of service via the delivery of many small messages within a single HTTP/2 frame, leading to uncontrolled recursion and stack consumption. Affected gRPC Swift servers are vulnerable to uncontrolled recursion and stack consumption when parsing certain payloads. Recommendations: For gRPC Swift versions 1.1.1 and earlier, upgrade to version 1.2.0 to resolve the issue.
PT-2021-21143
7.5
2021-07-09
Unknown · Grpc Swift · CVE-2021-36155
Name of the Vulnerable Software and Affected Versions: gRPC Swift versions 1.1.0 and earlier Description: The issue allows remote attackers to cause uncontrolled resource consumption and deny service due to the allocation of buffers of arbitrary length when parsing messages. This can lead to excessive memory allocation, resulting in a denial of service. Recommendations: For gRPC Swift versions 1.1.0 and earlier, upgrade to version 1.2.0 to resolve the issue.