CVE-2024-32974

CVSS V2 None CVSS V3 None
Description
Envoy is a cloud-native, open source edge and service proxy. A crash was observed in `EnvoyQuicServerStream::OnInitialHeadersComplete()` with following call stack. It is a use-after-free caused by QUICHE continuing push request headers after `StopReading()` being called on the stream. As after `StopReading()`, the HCM's `ActiveStream` might have already be destroyed and any up calls from QUICHE could potentially cause use after free.
Overview
  • CVE ID
  • CVE-2024-32974
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-06-04T21:00:07.788Z
  • Last Modified Date
  • 2024-06-04T21:00:07.788Z
References
Reference URL Reference Tags
https://github.com/envoyproxy/envoy/security/advisories/GHSA-mgxp-7hhp-8299 x_refsource_CONFIRM
History
Created Old Value New Value Data Type Notes
2024-06-26 08:39:27 Added to TrackCVE