envoy: malformed HTTP request without the Host header may cause abnormal termination of the Envoy process
Published Dec 13, 2019
7.5
HIGHCVSS 3.1
EPSS 2.14%
Description
An issue was discovered in Envoy 1.12.0. Upon receipt of a malformed HTTP request without a Host header, it sends an internally generated "Invalid request" response. This internally generated response is dispatched through the configured encoder filter chain before being sent to the client. An encoder filter that invokes route manager APIs that access a request's Host header causes a NULL pointer dereference, resulting in abnormal termination of the Envoy process.
Affected products
No data.
- ≤ 1.12.1
No data.
OpenShift Service Mesh 1.0
servicemesh-0:1.0.3-1.el8
Fixed · RHSA-2019:4222
OpenShift Service Mesh 1.0
servicemesh-cni-0:1.0.3-1.el8
Fixed · RHSA-2019:4222
OpenShift Service Mesh 1.0
servicemesh-grafana-0:6.2.2-25.el8
Fixed · RHSA-2019:4222
OpenShift Service Mesh 1.0
servicemesh-operator-0:1.0.3-1.el8
Fixed · RHSA-2019:4222
OpenShift Service Mesh 1.0
servicemesh-prometheus-0:2.7.2-26.el8
Fixed · RHSA-2019:4222
OpenShift Service Mesh 1.0
servicemesh-proxy-0:1.0.3-1.el8
Fixed · RHSA-2019:4222
Openshift Service Mesh 1.0
kiali-0:v1.0.8.redhat1-1.el7
Fixed · RHSA-2019:4222
| Product | Package | State | Advisory |
|---|---|---|---|
| OpenShift Service Mesh 1.0 | servicemesh-0:1.0.3-1.el8 | Fixed | RHSA-2019:4222 |
| OpenShift Service Mesh 1.0 | servicemesh-cni-0:1.0.3-1.el8 | Fixed | RHSA-2019:4222 |
| OpenShift Service Mesh 1.0 | servicemesh-grafana-0:6.2.2-25.el8 | Fixed | RHSA-2019:4222 |
| OpenShift Service Mesh 1.0 | servicemesh-operator-0:1.0.3-1.el8 | Fixed | RHSA-2019:4222 |
| OpenShift Service Mesh 1.0 | servicemesh-prometheus-0:2.7.2-26.el8 | Fixed | RHSA-2019:4222 |
| OpenShift Service Mesh 1.0 | servicemesh-proxy-0:1.0.3-1.el8 | Fixed | RHSA-2019:4222 |
| Openshift Service Mesh 1.0 | kiali-0:v1.0.8.redhat1-1.el7 | Fixed | RHSA-2019:4222 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (10)
- https://access.redhat.com/security/cve/CVE-2019-18838 Vendor Advisory
- https://blog.envoyproxy.io x_refsource_MISCProduct
- https://bugzilla.redhat.com/show_bug.cgi?id=1773449 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-8539 Advisory
- https://github.com/envoyproxy/envoy/commits/master x_refsource_MISCPatch
- https://github.com/envoyproxy/envoy/security/advisories/GHSA-f2rv-4w6x-rwhc x_refsource_CONFIRMExploitThird Party Advisory
- https://groups.google.com/forum/#!topic/envoy-users/m7z5fGkCzPI
- https://groups.google.com/forum/#%21forum/envoy-users x_refsource_MISC
- https://nvd.nist.gov/vuln/detail/CVE-2019-18838
- https://www.cve.org/CVERecord?id=CVE-2019-18838
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2019-18838 | Vendor Advisory | |
| https://blog.envoyproxy.io | x_refsource_MISCProduct | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1773449 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-8539 | Advisory | |
| https://github.com/envoyproxy/envoy/commits/master | x_refsource_MISCPatch | |
| https://github.com/envoyproxy/envoy/security/advisories/GHSA-f2rv-4w6x-rwhc | x_refsource_CONFIRMExploitThird Party Advisory | |
| https://groups.google.com/forum/#!topic/envoy-users/m7z5fGkCzPI | ||
| https://groups.google.com/forum/#%21forum/envoy-users | x_refsource_MISC | |
| https://nvd.nist.gov/vuln/detail/CVE-2019-18838 | ||
| https://www.cve.org/CVERecord?id=CVE-2019-18838 |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data