PT-2020-20255 · Cncf · Envoy

Alyssa Wilk

·

Published

2020-03-04

·

Updated

2022-05-24

·

CVE-2020-8661

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions CNCF Envoy versions prior to 1.13.1
Description The issue is related to excessive memory consumption when responding internally to pipelined requests.
Recommendations For versions prior to 1.13.1, update to version 1.13.1 or later to resolve the issue.

Fix

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-8661
GHSA-36CQ-WW7H-P4J7
RHSA-2020:0734

Affected Products

Envoy