CVE-2023-4785

CVSS V2 None CVSS V3 None
Description
Lack of error handling in the TCP server in Google's gRPC starting version 1.23 on posix-compatible platforms (ex. Linux) allows an attacker to cause a denial of service by initiating a significant number of connections with the server. Note that gRPC C++ Python, and Ruby are affected, but gRPC Java, and Go are NOT affected. 
Overview
  • CVE ID
  • CVE-2023-4785
  • Assigner
  • Google
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-09-13T16:31:55.664Z
  • Last Modified Date
  • 2023-09-13T16:37:13.825Z
History
Created Old Value New Value Data Type Notes
2024-06-24 19:35:46 Added to TrackCVE