Back to bug 2214469

Who When What Removed Added
Avinash Hanwate 2023-06-13 06:05:08 UTC Depends On 2214470, 2214472, 2214471
RaTasha Tillery-Smith 2023-06-13 11:57:13 UTC Doc Text The gRPC is vulnerable to a denial of service, caused by a base64 encoding error for "-bin" suffixed headers. By sending a specially crafted request, a remote attacker could exploit this vulnerability to cause a termination of the connection between an HTTP2 proxy and a gRPC server, and results in a denial of service condition. A flaw was found in gRPC, which is vulnerable to a denial of service, caused by a base64 encoding error for "-bin" suffixed headers. By sending a specially crafted request, a remote attacker can cause a termination of the connection between an HTTP2 proxy and a gRPC server, resulting in a denial of service.
CC dfreiber, jburrell, rogbas, vkumar
Red Hat Bugzilla 2023-07-07 08:29:37 UTC Assignee security-response-team nobody

Back to bug 2214469