LengthPrefixedMessageReader in gRPC Swift 1.1.0 and earlier allocates buffers of arbitrary length, which allows remote attackers to cause uncontrolled resource consumption and deny service.Read More ...
Continue ReadingMay 30, 2022
HTTP2ToRawGRPCServerCodec in gRPC Swift 1.1.1 and earlier allows remote attackers to deny service via the delivery of many small messages within a single HTTP/2 frame, leading to Uncontrolled Recursio ...
Continue ReadingMay 30, 2022
Mismanaged state in GRPCWebToHTTP2ServerCodec.swift in gRPC Swift 1.1.0 and 1.1.1 allows remote attackers to deny service by sending malformed requests.Read More ...
Continue ReadingMay 30, 2022
The version of Junos OS installed on the remote host is affected by multiple denial of service vulnerabilities as referenced in the JSA11167 advisory: - Some HTTP/2 implementations are vulnerable to ...
Continue ReadingMay 30, 2022
Like cURL, but for gRPC: Command-line tool for interacting with gRPC server s.Read More ...
Continue ReadingMay 30, 2022
GRPC to JSON proxy generator following the gRPC HTTP spec.Read More ...
Continue ReadingMay 30, 2022
etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled. If an etcd c ...
Continue ReadingMay 30, 2022
_This blog post was authored by Ankur Saini, Roberto Santos and Hossein Jazi._ UAC-0056 also known as SaintBear, UNC2589 and TA471 is a [cyber espionage actor]() that has been active since early 2021 ...
Continue ReadingMay 30, 2022
Back to Main