CVE Vulnerabilities

CVE-2020-25018

Published: Oct 01, 2020 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
7.5 IMPORTANT
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
root.io logo minimus.io logo echo.ai logo

Envoy master between 2d69e30 and 3b5acb2 may fail to parse request URL that requires host canonicalization.

Affected Software

NameVendorStart VersionEnd Version
EnvoyEnvoyproxy2d69e30 (including)3b5acb2 (excluding)

References