Description
Cloud Foundry Routing (Gorouter), versions prior to 0.204.0, when used in a deployment with NGINX reverse proxies in front of the Gorouters, is potentially vulnerable to denial-of-service attacks in which an unauthenticated malicious attacker can send specially-crafted HTTP requests that may cause the Gorouters to be dropped from the NGINX backend pool.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-26585 | Cloud Foundry Routing (Gorouter), versions prior to 0.204.0, when used in a deployment with NGINX reverse proxies in front of the Gorouters, is potentially vulnerable to denial-of-service attacks in which an unauthenticated malicious attacker can send specially-crafted HTTP requests that may cause the Gorouters to be dropped from the NGINX backend pool. |
References
| Link | Providers |
|---|---|
| https://www.cloudfoundry.org/blog/cve-2020-5416 |
|
History
No history.
Status: PUBLISHED
Assigner: pivotal
Published:
Updated: 2024-09-16T16:53:12.333Z
Reserved: 2020-01-03T00:00:00.000Z
Link: CVE-2020-5416
No data.
Status : Modified
Published: 2020-08-21T22:15:12.527
Modified: 2024-11-21T05:34:07.727
Link: CVE-2020-5416
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD