Linux Distros Unpatched Vulnerability : CVE-2023-32732
Discription

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. gRPC contains a vulnerability whereby a client can cause a termination of connection between a HTTP2 proxy and a gRPC server: a base64 encoding error for -bin suffixed headers will result in a disconnection by the gRPC server, but is typically allowed by HTTP2 proxies. We recommend upgrading beyond the commit in https://github.com/grpc/grpc/pull/32309 https://www.google.com/url (CVE-2023-32732) Note that Nessus relies on the presence of the package as reported by the vendor. File data…Read More
References
Back to Main