CVE-2019-18838 Information
Description
An issue was discovered in Envoy 1.12.0. Upon receipt of a malformed HTTP request without a Host header it sends an internally generated \Invalid request\ response. This internally generated response is dispatched through the configured encoder filter chain before being sent to the client. An encoder filter that invokes route manager APIs that access a request’s Host header causes a NULL pointer dereference resulting in abnormal termination of the Envoy process.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Reference
https://blog.envoyproxy.io https://github.com/envoyproxy/envoy/commits/master https://github.com/envoyproxy/envoy/security/advisories/GHSA-f2rv-4w6x-rwhc https://groups.google.com/forum/!forum/envoy-users
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
NONE
Base Score
HIGH
Base Severity
7.5
Share on: