Back

HIGH

Envoyproxy: openshift service mesh envoy http header sanitization bypass leading to dos and unauthorized access

Published Jan 28, 2025

Description

A flaw was found in OpenShift Service Mesh 2.6.3 and 2.5.6. Rate-limiter avoidance, access-control bypass, CPU and memory exhaustion, and replay attacks may be possible due to improper HTTP header sanitization in Envoy.

Affected products

Remediation

Vendor solution

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Red Hat statement

This IMPORTANT flaw in OpenShift Service Mesh 2.6.3 and 2.5.6 allows an attacker to bypass HTTP header sanitization in Envoy. This can lead to rate-limiter avoidance, access-control bypass, and resource exhaustion, potentially resulting in denial-of-service or unauthorized access within the service mesh environment. The vulnerability impacts deployments utilizing these specific versions of OpenShift Service Mesh.

Red Hat mitigation

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Weaknesses (1)

References (4)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Jan 28, 2025
Updated Feb 24, 2026
Reserved Jan 27, 2025
CISA Vulnrichment
Updated Jan 28, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Jan 21, 2025