CVE Vulnerabilities

CVE-2020-25018

Published: Oct 01, 2020 | Modified: Nov 07, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Envoy master between 2d69e30 and 3b5acb2 may fail to parse request URL that requires host canonicalization.

Affected Software

Name Vendor Start Version End Version
Envoy Envoyproxy 2d69e30 (including) 3b5acb2 (excluding)

References