gRPC contains a vulnerability whereby a client can cause a termination of connection between a HTTP2 proxy and a gRPC server: a base64 encoding error for -bin
suffixed headers will result in a disconnection by the gRPC server, but is typically allowed by HTTP2 proxies. We recommend upgrading beyond the commit inĀ https://github.com/grpc/grpc/pull/32309 https://www.google.com/url
A feature, API, or function does not perform according to its specification.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Grpc | Grpc | * | 1.53.0 (excluding) |
Grpc | Ubuntu | bionic | * |
Grpc | Ubuntu | kinetic | * |
Grpc | Ubuntu | lunar | * |
Grpc | Ubuntu | mantic | * |
Grpc | Ubuntu | trusty | * |
Grpc | Ubuntu | upstream | * |
Grpc | Ubuntu | xenial | * |