CVE-2021-28682
20.05.2021, 17:15
An issue was discovered in Envoy through 1.71.1. There is a remotely exploitable integer overflow in which a very large grpc-timeout value leads to unexpected timeout calculations.Enginsight
| Vendor | Product | Version |
|---|---|---|
| envoyproxy | envoy | 1.14.6 |
| envoyproxy | envoy | 1.15.3 |
| envoyproxy | envoy | 1.16.2 |
| envoyproxy | envoy | 1.17.1 |
𝑥
= Vulnerable software versions
References